Vulnerability Details CVE-2018-1000141
I, Librarian version 4.9 and earlier contains an Incorrect Access Control vulnerability in ajaxdiscussion.php that can result in any users gaining unauthorized access (read, write and delete) to project discussions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.4%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 7.5
Products affected by CVE-2018-1000141
-
cpe:2.3:a:i-librarian:i_librarian:3.0
-
cpe:2.3:a:i-librarian:i_librarian:3.1
-
cpe:2.3:a:i-librarian:i_librarian:3.2
-
cpe:2.3:a:i-librarian:i_librarian:3.2.1
-
cpe:2.3:a:i-librarian:i_librarian:3.3
-
cpe:2.3:a:i-librarian:i_librarian:3.4
-
cpe:2.3:a:i-librarian:i_librarian:3.4.1
-
cpe:2.3:a:i-librarian:i_librarian:3.5
-
cpe:2.3:a:i-librarian:i_librarian:4.0
-
cpe:2.3:a:i-librarian:i_librarian:4.1
-
cpe:2.3:a:i-librarian:i_librarian:4.2
-
cpe:2.3:a:i-librarian:i_librarian:4.3
-
cpe:2.3:a:i-librarian:i_librarian:4.4
-
cpe:2.3:a:i-librarian:i_librarian:4.5
-
cpe:2.3:a:i-librarian:i_librarian:4.6
-
cpe:2.3:a:i-librarian:i_librarian:4.7
-
cpe:2.3:a:i-librarian:i_librarian:4.8
-
cpe:2.3:a:i-librarian:i_librarian:4.9