CVE-2006-5932

Kahua before 0.7, when running multiple applications under a single supervisor, grants application access on the basis of username instead of username and database name, which allows remote authenticated users to obtain unauthorized access if different databases assign the same username to different user accounts.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:kahua:kahua:0.1:*:*:*:*:*:*:*
cpe:2.3:a:kahua:kahua:0.2:*:*:*:*:*:*:*
cpe:2.3:a:kahua:kahua:0.3:*:*:*:*:*:*:*
cpe:2.3:a:kahua:kahua:0.4:*:*:*:*:*:*:*
cpe:2.3:a:kahua:kahua:0.5:*:*:*:*:*:*:*
cpe:2.3:a:kahua:kahua:0.6:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-11-16 00:07

Updated : 2024-02-04 17:13


NVD link : CVE-2006-5932

Mitre link : CVE-2006-5932

CVE.ORG link : CVE-2006-5932


JSON object : View

Products Affected

kahua

  • kahua