CVE-2014-1214
13.11.2019, 21:15
views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and (2) arbitrary extension in the Filename parameter.Enginsight
Vendor | Product | Version |
---|---|---|
projoom | smart_flash_header | 𝑥 ≤ 3.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References