Security Advisory

CVE-2018-7688

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-06-07 13:00:00
Last updated 2024-09-16 16:14:20
Assigner microfocus
CVSS score 7.1
State PUBLISHED

Description

A missing permission check in the review handling of openSUSE Open Build Service before 2.9.3 allowed all authenticated users to modify sources in projects where they do not have write permissions.