Joomla!.tiny_mce.Plugin.Arbitrary.File.Upload

description-logoDescription

This indicates an attack attempt to exploit a File Uploading vulnerability in Joomla.
There is a security bypass issue in the "TinyMCE" (tinybrowser) component. It may allow remote attackers to upload arbitrary files to the Joomla web folder.

affected-products-logoAffected Products

Joomla TinyMCE 3.9.2

Impact logoImpact

Security Bypass.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor supplied patch for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-02-01 14.540 Name:Joomla.
TinyMCE.
Arbitrary.
File.
Upload:Joomla!.
tiny_mce.
Plugin.
Arbitrary.
File.
Upload