PT-2019-15132 · Joomla · Shack Forms Pro

Published

2019-10-09

·

Updated

2019-10-11

·

CVE-2019-17399

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Shack Forms Pro extension versions prior to 4.0.32 for Joomla!
Description The issue allows path traversal via a file attachment, which can potentially be exploited.
Recommendations For versions prior to 4.0.32, update to version 4.0.32 or later to resolve the issue.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-17399

Affected Products

Shack Forms Pro