CVE-2024-5735
PoC ×2—CVSS 4.0
6.3 medium
EPSS
2%p73
Published
()
Modified
Description
Full Path Disclosure vulnerability in AdmirorFrames Joomla! extension in afHelper.php script allows an unauthorised attacker to retrieve location of web root folder. This issue affects AdmirorFrames: before 5.0.
- Vendors
- admiror-design-studio
- Products
- admirorframes
- Ecosystems
- Joomla
- Weakness
- CWE-497
- Vector
- CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:L/U:Green
In the news0 stories
No ingested article mentions this CVE yet.