MosP kintai kanri before 4.1.0 does not enforce privilege requirements, which allows remote authenticated users to read other users' information via unspecified vectors.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: jpcert

Published: 2012-11-08T11:00:00

Updated: 2013-02-02T10:00:00

Reserved: 2012-07-12T00:00:00


Link: CVE-2012-4020

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2012-11-08T11:46:24.110

Modified: 2013-03-02T04:44:58.437


Link: CVE-2012-4020

JSON object: View

cve-icon Redhat Information

No data.

CWE