PT-2026-51137 · Icagenda.Com · Icagenda Extension For Joomla

Phil Taylor

·

Published

2026-06-20

·

Updated

2026-06-20

·

CVE-2026-48939

CVSS v4.0

10

Critical

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:A/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:X/U:Red
Name of the Vulnerable Software and Affected Versions iCagenda for Joomla (affected versions not specified)
Description A flaw in the file attachment feature allows the upload of arbitrary files, which can lead to the upload and execution of PHP code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-48939

Affected Products

Icagenda Extension For Joomla