First published: Tue May 03 2005(Updated: )
Serendipity before 0.8 allows Chief users to "hide plugins installed by other users."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Serendipity (S9Y) Freetag Event | =0.3 | |
Serendipity (S9Y) Freetag Event | =0.4 | |
Serendipity (S9Y) Freetag Event | =0.5_pl1 | |
Serendipity (S9Y) Freetag Event | =0.6_pl3 | |
Serendipity (S9Y) Freetag Event | =0.7 | |
Serendipity (S9Y) Freetag Event | =0.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1452 has been rated as a moderate severity vulnerability due to its potential impact on user privacy and access control.
To mitigate CVE-2005-1452, upgrade to Serendipity version 0.8 or later where the vulnerability is addressed.
CVE-2005-1452 specifically affects users of Serendipity versions 0.3 through 0.7.1.
CVE-2005-1452 represents a permission escalation vulnerability allowing Chief users to hide plugins from other users.
While there are reports of the vulnerability, there are no widely known exploits specifically targeting CVE-2005-1452 at this time.