This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:mahara:mahara:1.0.15
Detail
VendorMaharaFirst view 2010-11-09
ProductMaharaLast view 2012-07-12
Version1.0.15TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:mahara:mahara

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
52012-07-12CVE-2012-2351NetworkLowNone Requ...
62011-11-14CVE-2011-4118NetworkMediumRequires ...
6.82011-11-14CVE-2011-2773NetworkMediumNone Requ...
52011-11-14CVE-2011-2772NetworkLowNone Requ...
4.32011-11-14CVE-2011-2771NetworkMediumNone Requ...
Hide | Show 6 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
4.32011-05-13CVE-2011-1406NetworkMediumNone Requ...
3.52011-05-13CVE-2011-1405NetworkMediumRequires ...
42011-05-13CVE-2011-1404NetworkLowRequires ...
6.82011-05-13CVE-2011-1403NetworkMediumNone Requ...
6.52011-05-13CVE-2011-1402NetworkLowRequires ...
4.32010-11-09CVE-2010-3871NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
27% (3)CWE-264Permissions, Privileges, and Access Controls
27% (3)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
18% (2)CWE-352Cross-Site Request Forgery (CSRF)
18% (2)CWE-16Configuration
9% (1)CWE-20Improper Input Validation

Open Source Vulnerability Database (OSVDB)

idDescription
77207Mahara MNet XMLRPC Jump Remote Privilege Escalation
76919Mahara admin/users/addtoinstitution.php User Institution Manipulation CSRF
76918Mahara Overly Large Image Handling Remote DoS
76917Mahara External Feed Block Unspecified XSS
73458Mahara wwwroot https URL Parsing Credential Disclosure
Hide | Show 5 More...
idDescription
73457Mahara HTML Email Message XSS
73456Mahara Multiple Script AJAX Call Parsing Information Disclosure
73455Mahara Admin User Addition CSRF
73454Mahara Multiple Script Access Restriction Bypass
69111Mahara blocktype/groupviews/theme/raw/groupviews.tpl Unspecified Parameter XSS