CVE-2024-11145

EUVD-2024-33745
Valor Apps Easy Folder Listing Pro has a deserialization vulnerability that allows an unauthenticated, remote attacker to execute arbitrary code with the privileges of the Joomla! application. Fixed in versions 3.8 and 4.5.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
Affected Products (NVD)
VendorProductVersion
valorappseasy_folder_listing_pro
4.4 ≤
𝑥
< 4.5
valorappseasy_folder_listing_pro
3.7
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
valor_appseasy_folder_listing_pro
3.7 ≤
𝑥
< 3.8
ADP
valor_appseasy_folder_listing_pro
4.4 ≤
𝑥
< 4.5
ADP