vendor:
Proclaim
by:
Ihsan Sencan
7.5
CVSS
HIGH
Backup Download
20
CWE
Product Name: Proclaim
Affected Version From: 9.1.1
Affected Version To: 9.1.1
Patch Exists: YES
Related CWE: CVE-2018-7317
CPE: a:christianwebministries:proclaim
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: WiN7_x64/KaLiLinuX_x64
2018
Joomla! Component Proclaim 9.1.1 – Backup Download
A vulnerability in Joomla! Component Proclaim 9.1.1 allows an attacker to download the backup of the database by accessing the URL http://localhost/[PATH]/media/com_biblestudy/backup/Joomla375_jbs-db-backup_2018_February_22_1518955684.sql
Mitigation:
Upgrade to the latest version of Joomla! Component Proclaim