CVE-2019-9943

In ome.services.graphs.GraphTraversal.findObjectDetails in Open Microscopy Environment OMERO.server 5.1.0 through 5.6.0, permissions on OMERO model objects may be circumvented during certain operations such as move and delete, because group permissions are mishandled.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:openmicroscopy:omero.server:*:*:*:*:*:*:*:*

Information

Published : 2020-06-17 10:15

Updated : 2020-06-24 07:57


NVD link : CVE-2019-9943

Mitre link : CVE-2019-9943


JSON object : View

CWE
CWE-276

Incorrect Default Permissions

Advertisement

dedicated server usa

Products Affected

openmicroscopy

  • omero.server