Vulnerability Description
An issue was discovered in Joomla! Core before 3.8.8. Inadequate checks allowed users to modify the access levels of user groups with higher permissions.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Joomla | Joomla\! | < 3.8.8 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/104276Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040966Third Party AdvisoryVDB Entry
- https://developer.joomla.org/security-centre/729-20180501-core-acl-violation-in-Vendor Advisory
- http://www.securityfocus.com/bid/104276Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040966Third Party AdvisoryVDB Entry
- https://developer.joomla.org/security-centre/729-20180501-core-acl-violation-in-Vendor Advisory
FAQ
What is CVE-2018-11323?
CVE-2018-11323 is a vulnerability with a CVSS score of 8.8 (HIGH). An issue was discovered in Joomla! Core before 3.8.8. Inadequate checks allowed users to modify the access levels of user groups with higher permissions.
How severe is CVE-2018-11323?
CVE-2018-11323 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-11323?
Check the references section above for vendor advisories and patch information. Affected products include: Joomla Joomla\!.