Impact
The JMedia extension for Joomla allows authenticated users to upload arbitrary files, including executable and polyglot types, because the upload handler does not strip execute bits. This flaw can be leveraged by an attacker who has Joomla administrative or content‑manager privileges to upload malicious code that the web server then executes, giving the attacker full control over the host. The vulnerability is classified as a high‑severity file‑upload issue (CWE‑434).
Affected Systems
The flaw affects the JMedia extension for Joomla developed by themexpert.com in all versions earlier than 1.6.0. Sites running Joomla with this extension version are vulnerable and may have administrators or other authenticated users capable of uploading files.
Risk and Exploitability
The CVSS score of 9.4 reflects the high impact and availability of the vulnerability. The EPSS score of < 1% indicates a very low probability of exploitation at this time, and the issue is not listed in the CISA KEV catalog, implying no currently known exploits. The attack requires authenticated access to the Joomla backend; an attacker with such privileges can directly place a web‑accessible file that the server will execute. Because the flaw permits uploading of any file type without restriction and the server is likely configured to serve files from the upload directory, the exploitation path is straightforward and does not rely on additional infrastructure.
OpenCVE Enrichment