← Back to CVE List

CVE-2015-2203

Published: 2018-02-01T17:29Z
Last Modified: 2024-11-21T02:26Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Evergreen 2.5.9, 2.6.7, and 2.7.4 allows remote authenticated users with STAFF_LOGIN permission to obtain sensitive settings history information by leveraging listing of open-ils.pcrud as a controller in the IDL. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt