- Project: Joomla!
- SubProject: CMS
- Severity: Low
- Versions: 1.6.0 through 3.6.0
- Exploit type: ACL Violation
- Reported Date: 2016-April-29
- Fixed Date: 2016-August-03
- CVE Numbers: requested
Description
Inadequate ACL checks in com_content provide potential read access to data which should be access restricted to users with edit_own level.
Affected Installs
Joomla! CMS versions 1.6.0 through 3.6.0
Solution
Upgrade to version 3.6.1
Contact
The JSST at the Joomla! Security Centre.
Reported By: T-Systems Multimedia Solutions