Arbitrary File Upload Vulnerability in Joomla! Core by Joomla
CVE-2010-1433

9.8CRITICAL

Key Information:

Vendor
Joomla
Status
Vendor
CVE Published:
21 June 2021

Summary

The Joomla! Core is susceptible to a vulnerability that allows attackers to upload arbitrary files due to insufficient validation of user-supplied input. This flaw can be exploited to upload malicious code, enabling unauthorized access or privilege escalation within the webserver environment. All Joomla! Core versions from 1.5.0 to 1.5.15 are affected, making it critical for users to address this security issue promptly.

Affected Version(s)

Joomla Joomla core from 1.5.0 up to and including 1.5.15

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.