vendor:
Joomla! component com_jsjobs
by:
qw3rTyTy
7.5
CVSS
HIGH
Arbitrary File Deletion
22
CWE
Product Name: Joomla! component com_jsjobs
Affected Version From: 1.2.2006
Affected Version To: 1.2.2006
Patch Exists: YES
Related CWE:
CPE: a:joomsky:com_jsjobs:1.2.6
Platforms Tested: Debian/nginx/joomla 3.9.0
2019
Joomla! component com_jsjobs 1.2.6 – Arbitrary File Deletion
This vulnerability is caused when processing custom userfield.
Mitigation:
Update to the latest version of the software.