CVE Published: 07/06/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2018 Source: microfocus |
Vendor: openSUSE |
Product: Open Build Service Status : PUBLISHED
CVE-2018-7688 Description
A missing permission check in the review handling of openSUSE Open Build Service before 2.9.3 allowed all authenticated users to modify sources in projects where they do not have write permissions.