Home > Content Management, File Inclusion, Remote Command Execution > Joomla! Multiple NoNumber Extensions Local File Inclusion and PHP Code Execution

Joomla! Multiple NoNumber Extensions Local File Inclusion and PHP Code Execution

November 1st, 2011

Application: Joomla!
Affected Version:
* Add to Menu, versions prior to 1.8.1.
* AdminBar Docker, versions prior to 1.6.1.
* Advanced Module Manager, versions prior to 2.2.3.
* Articles Anywhere, versions prior to 1.13.1.
* Better Preview, versions prior to 1.10.1.
* Cache Cleaner, versions prior to 1.11.1.
* CDN, versions prior to 1.6.1.
* Content Templater, versions prior to 1.14.1.
* CustoMenu, versions prior to 2.8.1.
* DB Replacer, versions prior to 1.3.2.
* Modalizer, versions prior to 3.6.1.
* Modules Anywhere, versions prior to 1.13.1.
* NoNumber! Extension Manager, versions prior to 2.6.2.
* ReReplacer, versions prior to 2.17.2.
* Slider, versions prior to 1.7.1.
* Snippets, versions prior to 1.2.1.
* Sourcerer, versions prior to 2.11.1.
* Tabber, versions prior to 1.7.1.
* Timed Styles, versions prior to 1.4.1.
* Tooltips, versions prior to 1.1.1.
* What? Nothing!, versions prior to 6.2.1.
Vendor’s URL: Multiple NoNumber Extensions
Bug Type: File Inclusion and Code Execution
Risk Level: Critical

Solution:
Update to the respective latest version.

Content Management, File Inclusion, Remote Command Execution

Comments are closed.