IgnitionServer Entry Deletion Access Validation Checking Vulnerability

ignitionServer is prone to an issue that allows hosts to delete access entries created by owners. This occurs because access validation is never performed when the host deletes the entry.

This issue was addressed in ignitionServer 0.3.6-P1.


 

Privacy Statement
Copyright 2010, SecurityFocus