Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions by escalating their privileges due to a programming error. Joomla! Core versions 1.7.x ranging from 1.7.0 and up to and including 1.7.5 are vulnerable.
Remediation
Update to Joomla! Core version 2.5.3 or latest
References
http://jeffchannell.com/Joomla/joomla-161725-privilege-escalation-vulnerability.html
https://www.exploit-db.com/exploits/41156/
https://developer.joomla.org/security-centre/395-20120303-core-privilege-escalation.html
Related Vulnerabilities
WordPress Plugin WordPress Comments Import & Export CSV Injection (2.0.4)
WordPress Plugin WP-UserOnline URL HTML Injection (2.62)
Moodle Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-3809)
WordPress Plugin Post Views Count (Support caching plugins!) Cross-Site Scripting (3.0.2)
Internet Information Services Other Vulnerability (CVE-2011-5279)