Unrated severityNVD Advisory· Published Jun 19, 2009· Updated Apr 23, 2026
CVE-2009-2125
CVE-2009-2125
Description
delete_bug.php in Elvin before 1.2.1 does not require administrative privileges, which allows remote authenticated users to bypass intended access restrictions and delete arbitrary bugs.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- bugs.elvinbts.org/show_bug.phpnvdPatchVendor Advisory
- secunia.com/advisories/35430nvdVendor Advisory
- osvdb.org/55101nvd
News mentions
0No linked articles in our index yet.