Joomla 扩展 - lomart.fr - UP 插件扩展(版本 5.0.0 至 5.2.0、6.0.0 至 6.0.29)中存在未认证的远程代码安装漏洞
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| lomart.fr | UP plugin for Joomla | 5.0.0-5.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-97160 | 9.4 CRITICAL | Joomla Extension - lomart.fr - Authenticated, privileged PHP command injection in UP plugi |
| CVE-2026-97161 | 9.2 CRITICAL | Joomla Extension - lomart.fr - Various path traversal / file access vectors in UP plugin e |
| CVE-2026-97162 | 8.3 HIGH | Joomla Extension - lomart.fr - Various SQL injection vectors in UP plugin extension 5.0.0- |
No comments yet