[20160801] - Core - ACL Violation
- Details
- Joomla RSS Sicherheit
- Kategorie: Joomla News
Project: Joomla!
SubProject: CMS
Severity: Low
Versions: 1.6.0 through 3.6.0
Exploit type: ACL Violation
Reported Date: 2016-April-29
Fixed Date: 2016-August-03
CVE Numbers: requested
Description
Inadequate ACL checks in com_content provide potential read access to data which should be access restricted to users with edit_own level.
Affected Installs
Joomla! CMS versions 1.6.0 through 3.6.0
Solution
Upgrade to version 3.6.1
Contact
The JSST at the Joomla! Security Centre.
Reported By: T-Systems Multimedia Solutions
- Zugriffe: 1853