Joomla 是美国Open Source Matters团队的一套使用PHP和MySQL开发的开源、跨平台的内容管理系统(CMS)。 Joomla!存在跨站请求伪造漏洞,该漏洞允许远程攻击者可利用该漏洞执行跨站点请求伪造攻击。受影响的产品及版本如下:Joomla!: 3.0.1 3.0.0 3.0.2、3.0.3 3.0.4,3.1.0,3.1.1,3.1.2,3.1.3,3.1.4,3.1.5,3.1.6,3.2.0,3.2.1、3.2.2,3.2.3,第3.2.4,3.2.5,3.2.6 3.2.7
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Joomla! Project | Joomla! CMS | 3.0.0-3.9.26 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-26032 | [20210501] - Core - Adding HTML to the executable block list of MediaHelper::canUpload | |
| CVE-2021-26033 | [20210502] - Core - CSRF in AJAX reordering endpoint |
No comments yet