Remote User Message Reading Vulnerability in Mahara 1.3.x and 1.4.x

Remote User Message Reading Vulnerability in Mahara 1.3.x and 1.4.x

CVE-2011-2774 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:N/A:N

The "Reply to message" feature in Mahara 1.3.x and 1.4.x before 1.4.1 allows remote authenticated users to read the messages of a different user via a modified replyto parameter.

Learn more about our User Device Pen Test.