PT-2014-7313 · Open Source Matters · Joomla!

Publicado

2014-10-08

·

Atualizado

2014-10-09

·

CVE-2014-6632

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Joomla! versions 2.5.x through 2.5.24 Joomla! versions 3.x through 3.2.3 Joomla! versions 3.3.x through 3.3.3
Description The issue allows remote attackers to authenticate and bypass intended access restrictions via vectors involving LDAP authentication.
Recommendations For Joomla! versions 2.5.x through 2.5.24, update to version 2.5.25 or later. For Joomla! versions 3.x through 3.2.3, update to version 3.2.4 or later. For Joomla! versions 3.3.x through 3.3.3, update to version 3.3.4 or later.

Correção

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-6632

Produtos afetados

Joomla!