First published: Tue Oct 09 2018(Updated: )
An issue was discovered in Joomla! before 3.8.13. Inadequate checks in com_contact could allow mail submission in disabled forms.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | >=2.5.0<3.8.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-17859 has a moderate severity level as it involves inadequate checks that may allow unauthorized mail submissions.
To fix CVE-2018-17859, update your Joomla! installation to version 3.8.13 or later.
CVE-2018-17859 affects Joomla! versions before 3.8.13, including all versions from 2.5.0 up to 3.8.12.
CVE-2018-17859 impacts the com_contact component within Joomla!.
Yes, CVE-2018-17859 can be exploited to allow mail submission even if contact forms are disabled.