An issue was discovered in Joomla! 3.0.0 through 3.9.24. Extracting an specifilcy crafted zip package could write files outside of the intended path.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-0710 An issue was discovered in Joomla! 3.0.0 through 3.9.24. Extracting an specifilcy crafted zip package could write files outside of the intended path.
Github GHSA Github GHSA GHSA-vgwr-773q-7j3c Path Traversal within joomla/archive zip class
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2024-09-16T20:46:55.537Z

Reserved: 2021-01-25T00:00:00

Link: CVE-2021-26028

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-03-04T18:15:13.910

Modified: 2024-11-21T05:55:46.330

Link: CVE-2021-26028

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.