Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rh3-rmh3-hv6h

Опубликовано: 20 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 10
CVSS3: 9.8

Описание

A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.

A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.

EPSS

Процентиль: 97%
0.19727
Средний

10 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.

EPSS

Процентиль: 97%
0.19727
Средний

10 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-284
CWE-434