Vulnerabilities
Vulnerable Software
Mahara:  >> Mahara  >> 22.04.2  Security Vulnerabilities
In Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0, embedded images are accessible without a sufficient permission check under certain conditions.
CVSS Score
7.5
EPSS Score
0.002
Published
2022-11-06
Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0 potentially allow a PDF export to trigger a remote shell if the site is running on Ubuntu and the flag -dSAFER is not set with Ghostscript.
CVSS Score
9.8
EPSS Score
0.003
Published
2022-11-06
In Mahara 21.04 before 21.04.6, 21.10 before 21.10.4, and 22.04.2, files can sometimes be downloaded through thumb.php with no permission check.
CVSS Score
7.5
EPSS Score
0.002
Published
2022-06-20


Contact Us

Shodan ® - All rights reserved