Joomla! CVE-2013-3056 Security Bypass Vulnerability
BID:59490
Info
Joomla! CVE-2013-3056 Security Bypass Vulnerability
| Bugtraq ID: | 59490 |
| Class: | Access Validation Error |
| CVE: |
CVE-2013-3056 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 25 2013 12:00AM |
| Updated: | Apr 25 2013 12:00AM |
| Credit: | Francois Gauthier |
| Vulnerable: |
Joomla Joomla! 2.5.4 Joomla Joomla! 2.5.3 Joomla Joomla! 2.5.2 Joomla Joomla! 2.5.1 Joomla Joomla! 2.5 |
| Not Vulnerable: | |
Discussion
Joomla! CVE-2013-3056 Security Bypass Vulnerability
Joomla! is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
Versions prior to Joomla! 2.5.10, 3.0.4, and 3.1.0 are vulnerable.
Joomla! is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
Versions prior to Joomla! 2.5.10, 3.0.4, and 3.1.0 are vulnerable.
Exploit / POC
Joomla! CVE-2013-3056 Security Bypass Vulnerability
Attackers can exploit this issue through a browser.
Attackers can exploit this issue through a browser.
References
Joomla! CVE-2013-3056 Security Bypass Vulnerability
References:
References:
- Joomla! 2.5.10 Released (Joomla)
- Joomla! 3.1.0 Stable Released (Joomla)
- Joomla! Homepage (Joomla!)
- [20130401] - Core - Privilege Escalation (Joomla!)