Vulnerabilities (CVE)

Filtered by vendor Projoom Subscribe
Filtered by product Smart Flash Header
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-1214 1 Projoom 1 Smart Flash Header 2024-11-21 6.5 MEDIUM 8.8 HIGH
views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and (2) arbitrary extension in the Filename parameter.