CVE-2017-15201

In Kanboard before 1.0.47, by altering form data, an authenticated user can edit tags of a private project of another user.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:kanboard:kanboard:1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.13:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.15:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.20:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.22:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.29:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.31:beta0:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.34:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.36:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.16:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.17:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.18:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.19:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.24:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.25:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.31:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.32:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.41:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.43:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.45:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.46:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.31:beta1:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.32:beta1:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.32:beta0:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.12:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.14:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.21:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.23:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.26:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.27:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.28:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.30:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.33:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.35:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.37:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.38:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.39:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.40:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.42:*:*:*:*:*:*:*
cpe:2.3:a:kanboard:kanboard:1.0.44:*:*:*:*:*:*:*

Information

Published : 2017-10-10 18:32

Updated : 2019-10-02 17:03


NVD link : CVE-2017-15201

Mitre link : CVE-2017-15201


JSON object : View

CWE
CWE-639

Authorization Bypass Through User-Controlled Key

Advertisement

dedicated server usa

Products Affected

kanboard

  • kanboard