ZeroHour

CVE-2018-11321

CVSS 3.0
6.5 medium
EPSS
2%p79
Published
()
Modified
Description

An issue was discovered in com_fields in Joomla! Core before 3.8.8. Inadequate filtering allows users authorised to create custom fields to manipulate the filtering options and inject an unvalidated option.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-20
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.