Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2019-10945 - Vulnerability Database

Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2019-10945

Critical
Reference: CVE-2019-10945
Title: Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Overview:

An issue was discovered in Joomla before 3.9.5. The Media Manager component does not properly sanitize the folder parameter allowing attackers to act outside the media manager root directory.