ZeroHour

CVE-2018-17855

CVSS 3.0
8.8 high
EPSS
2%p78
Published
()
Modified
Description

An issue was discovered in Joomla! before 3.8.13. If an attacker gets access to the mail account of an user who can approve admin verifications in the registration process, he can activate himself.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-269
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.