CVE-2020-10238
HIGHJoomla! < 3.9.16 - Incorrect Access Control in com_templates
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-10238. PoCs published by HoangKien1020.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2020-10238, an incorrect access control vulnerability in Joomla's com_templates component. The exploit allows authenticated administrators to achieve remote code execution by uploading a malicious PHP file.
Description
An issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required ACL checks, leading to various potential attack vectors.
Exploits (1)
This repository contains a functional exploit for CVE-2020-10238, an incorrect access control vulnerability in Joomla's com_templates component. The exploit allows authenticated administrators to achieve remote code execution by uploading a malicious PHP file.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N