CVE-2014-5375
The server in Adaptive Computing Moab before 7.2.9 and 8 before 8.0.0 does not properly validate the message owner matches the submitting user, which allows remote authenticated users to impersonate arbitrary users via the UserId and Owner tags.
Date published : 2014-10-08
http://www.securityfocus.com/bid/70174
http://www.securityfocus.com/archive/1/533576/100/0/threaded
