Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-8870
Description:The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4, when registration has been disabled, allows remote attackers to create user accounts by leveraging failure to check the Allow User Registration configuration setting.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-8870
BugTraq ID: 93876
http://www.securityfocus.com/bid/93876
https://www.exploit-db.com/exploits/40637/
http://www.rapid7.com/db/modules/auxiliary/admin/http/joomla_registration_privesc
https://blog.sucuri.net/2016/10/details-on-the-privilege-escalation-vulnerability-in-joomla.html
https://medium.com/@showthread/joomla-3-6-4-account-creation-elevated-privileges-write-up-and-exploit-965d8fb46fa2#.rq4qh1v4r
http://www.securitytracker.com/id/1037107
http://www.securitytracker.com/id/1037108




© 1998-2025 E-Soft Inc. All rights reserved.