Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2021-26028 - Vulnerability Database
Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2021-26028
Medium
Reference:
CVE-2021-26028
Title:
Joomla Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Overview:
An issue was discovered in Joomla 3.0.0 through 3.9.24. Extracting an specifilcy crafted zip package could write files outside of the intended path.