CVE-2019-16185: High severity limesurvey vulnerability
In Limesurvey before 3.17.14, admin users can view, update, or delete reserved menu entries without proper permissions.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-16185?
CVE-2019-16185 is a vulnerability in Limesurvey before version 3.17.14 that allows admin users to view, update, or delete reserved menu entries without proper permissions.
How severe is CVE-2019-16185?
CVE-2019-16185 has a severity rating of 7.2 (high).
Which software versions are affected by CVE-2019-16185?
Limesurvey versions up to and excluding 3.17.14 are affected by CVE-2019-16185.
How can CVE-2019-16185 be fixed?
To fix CVE-2019-16185, users should update their Limesurvey installation to version 3.17.14 or newer.
Where can I find more information about CVE-2019-16185?
You can find more information about CVE-2019-16185 at the following references: [GitHub commit](https://github.com/LimeSurvey/LimeSurvey/commit/5870fd1037058bc4e43cccf893b576c72293371e#diff-d539f3f8185667ee48db78e1bf65a3b4R51) and [Limesurvey updates page](https://www.limesurvey.org/limesurvey-updates/2188-limesurvey-3-17-14-build-190902-released).