VYPR
Unrated severityNVD Advisory· Published Feb 10, 2022· Updated Aug 3, 2024

CVE-2022-24111

CVE-2022-24111

Description

In Mahara 21.04 before 21.04.3 and 21.10 before 21.10.1, portfolios created in groups that have not been shared with non-group members and portfolios created on the site and institution levels can be viewed without requiring a login if the URL to these portfolios is known.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Mahara (software)/Maharacpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: >=21.04, <21.04.3 || >=21.10, <21.10.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.