Vulnerabilities (CVE)

Filtered by vendor Joomanager Project Subscribe
Filtered by product Joomanager
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18345 1 Joomanager Project 1 Joomanager 2024-02-04 5.0 MEDIUM 9.8 CRITICAL
The Joomanager component through 2.0.0 for Joomla! has an arbitrary file download issue, resulting in exposing the credentials of the database via an index.php?option=com_joomanager&controller=details&task=download&path=configuration.php request.