Description
In Joomla Component GMapFP Version J3.5 and J3.5free, an attacker can access the upload function without authenticating to the application and can also upload files which due to issues of unrestricted file uploads which can be bypassed by changing the content-type and name file too double extensions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:05:11.658Z
Reserved: 2020-08-13T00:00:00.000Z
Link: CVE-2020-23972
No data.
Status : Modified
Published: 2020-08-27T14:15:09.837
Modified: 2024-11-21T05:14:16.273
Link: CVE-2020-23972
No data.
OpenCVE Enrichment
No data.
Weaknesses