{"id":"CVE-2018-12642","details":"Froxlor through 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user.","aliases":["GHSA-r6g8-mq9v-cgp4"],"modified":"2026-08-07T14:49:22.180277Z","published":"2018-06-22T12:29:00.273Z","references":[{"type":"FIX","url":"https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/froxlor/froxlor","events":[{"introduced":"0"},{"last_affected":"5c30961d3c0a3dc9262b09f39b56e52f4e902694"},{"fixed":"aa881560cc996c38cbf8c20ee62854e27f72c73c"}],"database_specific":{"cpe":"cpe:2.3:a:froxlor:froxlor:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"0.9.39.5"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["0.9.39.5","0.9.39.4","0.9.39.3","0.9.39.2","0.9.39.1","0.9.39","0.9.38.8","0.9.38.7","0.9.38.6","0.9.38.5","0.9.38.4","0.9.38.3","0.9.38.2","0.9.38.1","0.9.38","0.9.38-rc2","0.9.38-rc1","0.9.37","0.9.37-rc1","0.9.36","0.9.35.1","0.9.35","0.9.35-rc1","0.9.34.2","0.9.34.1","0.9.33-rc3","0.9.33-rc2","0.9.33-rc1","0.9.32","0.9.32-rc2","0.9.32-rc1","0.9.31-rc1","0.9.30","0.9.30-rc1","0.9.29","0.9.29-rc1","0.9.28.1","0.9.28","0.9.28-rc1","0.9.27","0.9.27-rc1","0.9.26","0.9.26-rc1","0.9.25","0.9.25-rc1","0.9.24","0.9.24-rc1","0.9.23","0.9.23-rc1","0.9.22","0.9.22-rc1","0.9.21","0.9.20.1","0.9.20","0.9.19","0.9.18.1","0.9.18"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-12642.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}