CVE-2022-48367
12.03.2023, 05:15
An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled.Enginsight
Vendor | Product | Version |
---|---|---|
ibexa | digital_experience_platform | 3.3.0 ≤ 𝑥 < 3.3.18 |
ibexa | digital_experience_platform | 4.0.0 ≤ 𝑥 < 4.0.5 |
ibexa | digital_experience_platform | 4.1.0 ≤ 𝑥 < 4.1.2 |
ibexa | ezplatform-http-cache-fastly | 1.1.0 ≤ 𝑥 < 1.1.9 |
ibexa | ezplatform-http-cache-fastly | 2.0.0 ≤ 𝑥 < 2.0.11 |
ibexa | fastly | 4.0.0 ≤ 𝑥 < 4.0.5 |
ibexa | fastly | 4.1.0 ≤ 𝑥 < 4.1.2 |
ibexa | ez_platform_kernel | 1.3.0 ≤ 𝑥 < 1.3.17 |
ibexa | ez_platform_kernel | 7.5.0 ≤ 𝑥 < 7.5.28 |
ibexa | kernel | 4.0.0 ≤ 𝑥 < 4.0.7 |
ibexa | kernel | 4.1.0 ≤ 𝑥 < 4.1.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References