6
CVSSv2

CVE-2011-5004

Published: 25/12/2011 Updated: 17/02/2012
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload vulnerability in models/importcsv.php in the Fabrik (com_fabrik) component prior to 2.1.1 for Joomla! allows remote authenticated users with Manager privileges to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.

Vulnerable Product Search on Vulmon Subscribe to Product

fabrikar com_fabrikar

fabrikar com_fabrikar 2.0.5

fabrikar com_fabrikar 2.0.4

fabrikar com_fabrikar 2.0.2

fabrikar com_fabrikar 1.0.6

fabrikar com_fabrikar 1.0.1