CVE-2013-7195 Information

Description

PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended \Only Me\ restrictions and \like\ a publication via a request that specifies the ID for the publication.

Reference

http://www.securityfocus.com/archive/1/531745/100/0/threaded http://www.securityfocus.com/bid/66672 https://exchange.xforce.ibmcloud.com/vulnerabilities/92335

Share on: