Total vulnerabilities in the database
UI/Manage.pm in Foswiki 1.1.0 and 1.1.1 allows remote authenticated users to gain privileges by modifying the GROUP and ALLOWTOPICCHANGE preferences in the topic preferences for Main.AdminGroup.
Software | From | Fixed in |
---|---|---|
foswiki / foswiki | 1.1.1 | 1.1.1.x |
foswiki / foswiki | 1.1.0 | 1.1.0.x |