A missing permission check in the review handling of openSUSE Open Build Service before 2.9.3 allowed all authenticated users to modify sources in projects where they do not have write permissions.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2018-19404 | A missing permission check in the review handling of openSUSE Open Build Service before 2.9.3 allowed all authenticated users to modify sources in projects where they do not have write permissions. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: microfocus
Published:
Updated: 2024-09-16T16:14:20.165Z
Reserved: 2018-03-05T00:00:00
Link: CVE-2018-7688

No data.

Status : Modified
Published: 2018-06-07T13:29:00.287
Modified: 2024-11-21T04:12:32.517
Link: CVE-2018-7688

No data.

No data.