CVE-2014-1214

Vulnérabilités

CVE-2014-1214

views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla!

HIGH smart_flash_header

views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and (2) arbitrary extension in the Filename parameter.

8.8 Élevée · CVSS 3.1

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDHIGH 8.8 (v3.1)
Produit
smart_flash_header
Corrigée dans
Non précisée
Publiée
13/11/2019
Modifiée
17/06/2026
CWE
CWE-434
  • smart_flash_header — jusqu'à 3.0.2

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC