Joomla! before 1.5 RC4 allows remote authenticated administrators to promote arbitrary users to the administrator group, in violation of the intended security model.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Joomla | Joomla | 1.5rc4 (including) | 1.5rc4 (including) |