Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently delete private messages. Joomla! Core versions 3.0.x ranging from 3.0.0 and up to and including 3.0.3 are vulnerable.
Remediation
Update to Joomla! Core version 3.0.4 or latest
References
Related Vulnerabilities
Moodle CVE-2021-36394 Vulnerability (CVE-2021-36394)
Magento Improper Access Control Vulnerability (CVE-2021-21020)
WordPress Plugin Zephyr Project Manager Multiple Vulnerabilities (3.2.42)
WordPress Plugin Yoast SEO Possible Remote Code Execution (9.1.0)
WordPress Plugin Nmedia WordPress Member Conversation 'doupload.php' Arbitrary File Upload (1.3)