FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

moinmoin -- superuser privilege escalation

Affected packages
moinmoin < 1.6.3

Details

VuXML ID c4ba95b2-39ce-11dd-98c9-00163e000016
Discovery 2008-04-20
Entry 2008-06-14
Modified 2008-06-15

MoinMoin team reports:

A check in the userform processing was not working as expected and could be abused for ACL and superuser privilege escalation.

References

CVE Name CVE-2008-1937
URL http://hg.moinmo.in/moin/1.6/rev/f405012e67af