Impact
The Joomla extension RSFiles is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full remote code execution (RCE). This flaw allows attackers to place malicious code on the server and execute it without authentication, representing an untrusted upload vulnerability classified as CWE-434.
Affected Systems
The vulnerability affects the RSFiles extension for Joomla from rsjoomla.com, versions earlier than 1.17.12. Users running those older releases are exposed.
Risk and Exploitability
The CVSS score climbs to 10, indicating a critical severity. The EPSS score is <1%, a very low but nonzero probability that attackers exploit this vulnerability, though the potential impact remains high. The vulnerability is not listed in the CISA KEV catalog. The likely attack path is via the public web interface of the extension, where an unauthenticated user can submit files for upload and execute them on the server.
OpenCVE Enrichment