oss-sec mailing list archives

CVE-request for three 2009 Joomla issues


From: Henri Salo <henri () nerv fi>
Date: Sun, 25 Dec 2011 02:27:24 +0200

I didn't find CVE-identifiers for these issues:

1) Joomla! TinyMCE Editor Tiny Browser Plugin File Upload Arbitrary PHP Code Execution
http://osvdb.org/show/osvdb/56276
http://developer.joomla.org/security/news/301-20090722-core-file-upload.html

2) Joomla! Missing JEXEC Check Weakness Path Disclosure
http://osvdb.org/show/osvdb/56277
http://developer.joomla.org/security/news/302-20090722-core-missing-jexec-check.html

3) TinyBrowser Plugin for Joomla! upload.php folder Parameter Arbitrary File Upload
http://osvdb.org/show/osvdb/64578

Secunia advisory for three issues: http://secunia.com/advisories/35899/

- Henri Salo


Current thread: