Joomla! 1.5x through 1.5.12: Missing JEXEC Check
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://www.openwall.com/lists/oss-security/2011/12/25/7 | third party advisory mailing list |
https://developer.joomla.org/security/news/301-20090722-core-file-upload.html | vendor advisory |