PT-2015-7809 · Open Source Matters · Joomla!
Calum Hutton
·
Published
2015-12-16
·
Updated
2015-12-17
·
CVE-2015-8564
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Joomla! versions 3.4.x through 3.4.5
Description
A directory traversal issue allows remote attackers to have an unspecified impact by using directory traversal sequences in the XML install file within an extension package archive.
Recommendations
For Joomla! versions 3.4.x through 3.4.5, update to version 3.4.6 or later to resolve the issue.
Fix
Path traversal
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Joomla!