Home

Description

Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.

PUBLISHED Reserved 2024-07-09 | Published 2024-12-04 | Updated 2024-12-25 | Assigner Joomla

Problem types

CWE-434: Unrestricted Upload of File with Dangerous Type

Product status

Default status
unaffected

1.0.0-4.4.7
affected

Credits

Horizon Security’s Offensive Team finder

References

www.tassos.gr/joomla-extensions/convert-forms product

cve.org (CVE-2024-40744)

nvd.nist.gov (CVE-2024-40744)

Download JSON