VYPR
Unrated severityNVD Advisory· Published Apr 28, 2009· Updated Apr 23, 2026

CVE-2009-1462

CVE-2009-1462

Description

The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.

Affected products

3
  • Razorcms/Razorcms3 versions
    cpe:2.3:a:razorcms:razorcms:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:razorcms:razorcms:*:*:*:*:*:*:*:*range: <=0.3
    • cpe:2.3:a:razorcms:razorcms:0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:razorcms:razorcms:0.3:rc2:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.