← Back

CVE-2007-4781

nvd nist
Published: Sep 10, 2007Modified: Apr 23, 2026

JSON object

Loading...
6.6
Vector
AV:N/AC:H/Au:S/C:N/I:C/A:C
Exploitability: 3.9 / Impact: 9.2
Source: NVD

Description

administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the "Upload Package File" functionality, which is accessible when com_installer is the value of the option parameter.

Affected (3)

Products: Joomla: Joomla
1 product
Joomla
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Joomla
Version 1.5.0_beta1
Version 1.5.0_beta2
Version 1.5.0_rc1

References (8)

Source: cve@mitre.org
Source: cve@mitre.org
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.