The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-04-28T16:00:00

Updated: 2024-08-07T05:13:25.890Z

Reserved: 2009-04-28T00:00:00

Link: CVE-2009-1462

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-04-28T16:30:03.717

Modified: 2017-08-17T01:30:21.833

Link: CVE-2009-1462

cve-icon Redhat

No data.