CVE-2013-3057: Medium severity joomla vulnerability
Published May 3, 2013
·Updated
Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and list the privileges of arbitrary users via unspecified vectors.
Affected Software
14 affected components
Joomla Joomla\!=2.5.0
Joomla Joomla\!=2.5.1
Joomla Joomla\!=2.5.2
Joomla Joomla\!=2.5.3
Joomla Joomla\!=2.5.4
Joomla Joomla\!=2.5.5
Joomla Joomla\!=2.5.6
Joomla Joomla\!=2.5.7
Joomla Joomla\!=2.5.8
Joomla Joomla\!=2.5.9
Joomla Joomla\!=3.0.0
Joomla Joomla\!=3.0.1
Joomla Joomla\!=3.0.2
Joomla Joomla\!=3.0.3
Event History
May 3, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3057?
CVE-2013-3057 is classified as a medium severity vulnerability.
2
How do I fix CVE-2013-3057?
To fix CVE-2013-3057, upgrade Joomla! to versions 2.5.10 or 3.0.4 or later.
3
What type of users are affected by CVE-2013-3057?
CVE-2013-3057 affects remote authenticated users who can potentially bypass privilege requirements.
4
What can an attacker achieve with CVE-2013-3057?
An attacker can exploit CVE-2013-3057 to list the privileges of arbitrary users within the Joomla! system.
5
Which Joomla! versions are impacted by CVE-2013-3057?
CVE-2013-3057 affects Joomla! versions prior to 2.5.10 and 3.0.4.