Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p9j6-qqww-29vg

Опубликовано: 20 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

The Joomla extension Quix Page Builder Pro is vulnerable to an improper access control. Authenticated users could upload media files regardless of their media management permissions.

The Joomla extension Quix Page Builder Pro is vulnerable to an improper access control. Authenticated users could upload media files regardless of their media management permissions.

EPSS

Процентиль: 15%
0.00239
Низкий

8.7 High

CVSS4

Дефекты

CWE-284

Связанные уязвимости

nvd
около 1 месяца назад

Joomla Extension - themexpert.com - Broken Access Control for media management in Quix Page Builder < 6.2.1 - The Joomla extension Quix Page Builder Pro is vulnerable to an improper access control. Authenticated users could upload media files regardless of their media management permissions.

EPSS

Процентиль: 15%
0.00239
Низкий

8.7 High

CVSS4

Дефекты

CWE-284