Joomla! before 1.5 RC4 allows remote authenticated administrators to promote arbitrary users to the administrator group, in violation of the intended security model.
References
Configurations
Information
Published : 2008-01-03 17:46
Updated : 2008-11-14 23:05
NVD link : CVE-2007-6644
Mitre link : CVE-2007-6644
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
joomla
- joomla