CVE-2013-4410: High severity review board vulnerability
Published Dec 2, 2019
·Updated
ReviewBoard: has an access-control problem in REST API
Affected Software
6 affected components
debian
ReviewBoard ReviewBoard>=1.6<1.6.19
ReviewBoard ReviewBoard>=1.7<1.7.15
Fedoraproject Fedora=18
Fedoraproject Fedora=19
Fedoraproject Fedora=20
Event History
Dec 2, 2019
CVE Published
via MITRE·05:36 PM
Data Sourced
via MITRE·05:36 PM
DescriptionWeakness
Aug 6, 2024
Data Sourced
via Debian·04:49 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-4410?
CVE-2013-4410 is classified as a medium severity vulnerability due to its access-control issues in the REST API.
2
How do I fix CVE-2013-4410?
To fix CVE-2013-4410, upgrade to a fixed version of ReviewBoard beyond 1.6.19 or 1.7.15.
3
What impact does CVE-2013-4410 have on affected systems?
CVE-2013-4410 can potentially allow unauthorized access to sensitive data through the REST API.
4
Which versions of ReviewBoard are impacted by CVE-2013-4410?
CVE-2013-4410 affects ReviewBoard versions from 1.6.0 to 1.6.19 and from 1.7.0 to 1.7.15.
5
Is CVE-2013-4410 publicly known?
Yes, CVE-2013-4410 is a publicly disclosed vulnerability that was made known in November 2013.