PT-2017-17855 · Joomla+1 · Smart Related Articles+1
Publicado
2017-04-13
·
Atualizado
2019-10-03
·
CVE-2017-7627
CVSS v3.1
5.3
Média
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Joomla "Smart related articles" extension version 1.1
Description
The issue concerns a missing JEXEC check in the dialog.php file of the "Smart related articles" extension for Joomla, allowing direct requests to this file.
Recommendations
For version 1.1 of the "Smart related articles" extension, consider adding a JEXEC check to the dialog.php file to prevent direct requests until a patch is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Joomla!
Smart Related Articles