ZeroHour

CVE-2019-10945

PoC ×2
CVSS 3.0
9.8 critical
EPSS
38%p98
Published
()
Modified
Description

An issue was discovered in Joomla! before 3.9.5. The Media Manager component does not properly sanitize the folder parameter, allowing attackers to act outside the media manager root directory.

Vendors
joomla
Products
joomla\!
Ecosystems
Joomla
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.