Security Breach: Editing off others posts with Level 1
|Reported by:||anonymousbugger||Owned by:||michel v|
If there are several users set to level one they can edit all posts by every user at this level. On the blog there is always the "edit this" link and administration doesn't validate too.
Change History (6)
- Owner changed from anonymous to michel v
- Resolution changed from 10 to 20
- Status changed from new to closed
Note: See TracTickets for help on using tickets.