CVE-2011-4927: Medium severity redmine vulnerability
Published Oct 8, 2012
·Updated
Unspecified vulnerability in the bazaar repository adapter in Redmine 1.0.x before 1.0.5 allows remote authenticated users to obtain sensitive information via unknown vectors.
Affected Software
5 affected components
Redmine Redmine=1.0.0
Redmine Redmine=1.0.1
Redmine Redmine=1.0.2
Redmine Redmine=1.0.3
Redmine Redmine=1.0.4
Event History
Oct 8, 2012
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4927?
CVE-2011-4927 has a medium severity level due to its potential for disclosing sensitive information.
2
How do I fix CVE-2011-4927?
To fix CVE-2011-4927, upgrade Redmine to version 1.0.5 or later, which addresses this vulnerability.
3
Who is affected by CVE-2011-4927?
CVE-2011-4927 affects remote authenticated users of Redmine versions 1.0.x prior to 1.0.5.
4
What kind of information can be obtained through CVE-2011-4927?
CVE-2011-4927 allows attackers to obtain sensitive information, though specific vectors are unspecified.
5
When was CVE-2011-4927 disclosed?
CVE-2011-4927 was disclosed in December 2011 and affects earlier versions of Redmine.