Joomla Improper Input Validation Vulnerability - CVE-2015-8564
Directory traversal vulnerability in Joomla 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via directory traversal sequences in the XML install file in an extension package archive.