Required CVE Record Information
Description
PHPFox 3.7.3 and 3.7.4 allows remote authenticated users to bypass intended "Only Me" restrictions and "like" a publication via a request that specifies the ID for the publication.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- securityfocus.com: 66672 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: phpfox-cve20137195-sec-bypass(92335) vdb-entryx_transferred
- securityfocus.com: 20140405 Vulnerability in PHPFox v3.7.3, v3.7.4 and v3.7.5 all build [ CVE-2013-7195, CVE-2013-7196 ] mailing-listx_transferred