CVE-2015-1151

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
28/04/2015
Last modified:
01/04/2016

Description

Wiki Server in Apple OS X Server before 4.1 allows remote attackers to bypass intended restrictions on Activity and People pages by connecting from an iPad client.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:apple:os_x_server:*:*:*:*:*:*:*:* 4.0 (including)