Joomla! Remote File Upload Vulnerability And Information Disclosure Weakness

Attackers can use a browser to exploit these issues.

The following example URIs are available:

http://www.example.com/joomla-1.5.12/libraries/joomla/utilities/compat/php50x.php
http://www.example.com/joomla-1.5.12/libraries/joomla/client/ldap.php
http://www.example.com/joomla-1.5.12/libraries/joomla/html/html/content.php

The following exploit is available for the file-upload issue:


 

Privacy Statement
Copyright 2010, SecurityFocus