I, Librarian version 4.9 and earlier contains an Incorrect Access Control vulnerability in ajaxdiscussion.php that can result in any users gaining unauthorized access (read, write and delete) to project discussions.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-1859 | I, Librarian version 4.9 and earlier contains an Incorrect Access Control vulnerability in ajaxdiscussion.php that can result in any users gaining unauthorized access (read, write and delete) to project discussions. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/mkucej/i-librarian/issues/124 |
|
History
Fri, 05 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Scilico
Scilico i\, Librarian |
|
| CPEs | cpe:2.3:a:scilico:i\,_librarian:*:*:*:*:*:*:*:* | |
| Vendors & Products |
I-librarian
I-librarian i Librarian |
Scilico
Scilico i\, Librarian |
| Metrics |
cvssV3_0
|
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T23:02:04.019Z
Reserved: 2018-03-23T00:00:00Z
Link: CVE-2018-1000141
No data.
Status : Analyzed
Published: 2018-03-23T21:29:00.707
Modified: 2025-12-05T20:14:54.530
Link: CVE-2018-1000141
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD