Security Advisory

CVE-2014-6275

5.9
MEDIUM

Vulnerability Description

FusionForge before 5.3.2 use scripts that run under the shared Apache user, which is also used by project homepages by default. If project webpages are hosted on the same server than FusionForge, it can allow users to incorrectly access on-disk private data in FusionForge.
Published Date January 2, 2020
Official Source NIST NVD Advisory