This application requires Javascript for optimal performance.

Joomla.Upload.Code.Execution

Release Date

Sep 17, 2009

Severity

high

Impact

System compromise

Description

This indicates an attack attempt against a code-execution vulnerability in Joomla.

The vulnerability is caused by an error when the vulnerable software handles uploading of files. It allows a remote attacker to execute arbitrary PHP code via sending a crafted web page.

Affected Products

Joomla 1.5.12

Recommended Actions

Upgrade to version 1.5.13 or later.

Coverage

IPS
VCM

Reference/s

http://secunia.com/advisories/35899/

Reference: VID-17698