vulnerability

FreeBSD: VID-624b45c0-c7f3-11e6-ae1b-002590263bf5 (CVE-2016-9836): Joomla! -- multiple vulnerabilities

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Dec 22, 2016
Added
Dec 22, 2016
Modified
Dec 10, 2025

Description

The JSST and the Joomla! Security Center report: [20161201] - Core - Elevated Privileges Incorrect use of unfiltered data stored to the session on a form validation failure allows for existing user accounts to be modified; to include resetting their username, password, and user group assignments. [20161202] - Core - Shell Upload Inadequate filesystem checks allowed files with alternative PHP file extensions to be uploaded. [20161203] - Core - Information Disclosure Inadequate ACL checks in the Beez3 com_content article layout override enables a user to view restricted content.

Solution

freebsd-upgrade-package-joomla3
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.