First published: Wed Aug 09 2017(Updated: )
Command inject in transfer from another server in extplorer 2.1.9 and prior allows attacker to inject command via the userfile[0] parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Explorer | <=2.1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12756 is rated as high severity due to its potential for command injection attacks.
To mitigate CVE-2017-12756, upgrade extplorer to version 2.1.10 or later, which addresses the vulnerability.
The potential impacts of CVE-2017-12756 include unauthorized command execution on the server, leading to data breaches and service disruptions.
If you are using extplorer version 2.1.9 or earlier, your system is vulnerable to CVE-2017-12756.
CVE-2017-12756 allows attackers to perform command injection, which can lead to system compromise and execution of arbitrary commands.