vendor:
com_jfuploader
by:
Setr0nix
8,8
CVSS
HIGH
Remote File Upload
434
CWE
Product Name: com_jfuploader
Affected Version From: 2.12 and below
Affected Version To: N/A
Patch Exists: Yes
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
N/A
Joomla Component com_jfuploader < 2.12 Remote File Upload
A vulnerability in Joomla Component com_jfuploader version 2.12 and below allows an attacker to upload a malicious file to the server. The attacker can register on the website, download a gif image, open it in Notepad++, copy and paste a PHP code after the last line, save it, rename it to logo.php.gif and upload it from com_jfuploader. The attacker can then access the uploaded file by going to http://127.0.0.1/files/YourUsername/logo.php.gif.
Mitigation:
Upgrade to version 2.12 or later, or apply the patch provided by the vendor.