Security News > 2020 > January > Facebook Rushes to Patch Bug Exposing Page Admins

Facebook Rushes to Patch Bug Exposing Page Admins
2020-01-13 12:53

Facebook last week rushed to patch a bug that exposed the accounts of individuals who manage pages, after the weakness was exploited against several high-profile pages.

If a Facebook page's administrator edits a post, users can keep track of the modifications with the "View edit history" feature.

The issue may have had serious implications, particularly for page administrators who are trying to keep their identity secret.

Despite the fact that the bug existed for less than a day, it was disclosed on websites such as 4chan and people quickly began abusing it against high-profile pages.

Roughly two years ago, a researcher discovered that an email invitation to like a Facebook page contained - in the email source code - the name of the page's administrator.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/Si3VKOYqbrI/facebook-rushes-patch-bug-exposing-page-admins

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Facebook 29 0 11 46 54 111