ZeroHour

CVE-2018-6378

CVSS 3.0
6.1 medium
EPSS
1%p71
Published
()
Modified
Description

In Joomla! Core before 3.8.8, inadequate filtering of file and folder names leads to various XSS attack vectors in the media manager.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.