Vulnerabilities > Edgewall

DATE CVE VULNERABILITY TITLE RISK
2019-11-13 CVE-2010-5108 Incorrect Default Permissions vulnerability in multiple products
Trac 0.11.6 does not properly check workflow permissions before modifying a ticket.
network
low complexity
edgewall debian CWE-276
7.5
2008-07-27 CVE-2008-2951 Open Redirect vulnerability in multiple products
Open redirect vulnerability in the search script in Trac before 0.10.5 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the q parameter, possibly related to the quickjump function.
network
low complexity
edgewall fedoraproject CWE-601
6.1