CVE-2011-4906: Malicious File Upload
Tiny browser in TinyMCE 3.0 editor in Joomla! before 1.5.13 allows file upload and arbitrary PHP code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2011-4906?
CVE-2011-4906 is a vulnerability found in the TinyMCE 3.0 editor in Joomla! before version 1.5.13, which allows for file upload and arbitrary PHP code execution.
How severe is CVE-2011-4906?
CVE-2011-4906 has a severity rating of 9.8 out of 10, indicating its criticality.
What is the affected software of CVE-2011-4906?
The affected software of CVE-2011-4906 is Tiny Tinybrowser in Joomla! before version 1.5.13.
How can I fix CVE-2011-4906?
To fix CVE-2011-4906, you should update Joomla! to version 1.5.13 or higher.
Are there any references for CVE-2011-4906?
Yes, you can find more information about CVE-2011-4906 at the following references: [Link 1](https://www.openwall.com/lists/oss-security/2011/12/25/7), [Link 2](https://developer.joomla.org/security/news/301-20090722-core-file-upload.html), [Link 3](https://www.exploit-db.com/exploits/10183)