Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.12.1 allows remote authenticated users to execute arbitrary code. An attacker must have check-in privileges on the repository.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
No history.
Information
Published : 2020-08-25 14:15
Updated : 2024-11-21 05:15
NVD link : CVE-2020-24614
Mitre link : CVE-2020-24614
CVE.ORG link : CVE-2020-24614
JSON object : View
Products Affected
fedoraproject
- fedora
opensuse
- backports_sle
- leap
fossil-scm
- fossil
CWE
CWE-862
Missing Authorization