ZeroHour

CVE-2024-5735

PoC ×2
CVSS 4.0
6.3 medium
EPSS
2%p73
Published
()
Modified
Description

Full Path Disclosure vulnerability in AdmirorFrames Joomla! extension in afHelper.php script allows an unauthorised attacker to retrieve location of web root folder. This issue affects AdmirorFrames: before 5.0.

Vendors
admiror-design-studio
Products
admirorframes
Ecosystems
Joomla
Weakness
CWE-497
Vector
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:L/U:Green

In the news

No ingested article mentions this CVE yet.