ZeroHour

CVE-2018-15882

CVSS 3.0
9.8 critical
EPSS
3%p86
Published
()
Modified
Description

An issue was discovered in Joomla! before 3.8.12. Inadequate checks in the InputFilter class could allow specifically prepared phar files to pass the upload filter.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-434
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.