Vulnerabilities > Apereo > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-11-17 CVE-2017-1000221 Incorrect Permission Assignment for Critical Resource vulnerability in Apereo Opencast
In Opencast 2.2.3 and older if user names overlap, the Opencast search service used for publication to the media modules and players will handle the access control incorrectly so that users only need to match part of the user name used for the access restriction.
network
low complexity
apereo CWE-732
6.5