CVE-2015-4074

Vulnérabilités

CVE-2015-4074

Directory traversal vulnerability in the Helpdesk Pro plugin before 1.4.0 for Joomla!

HIGH helpdesk_pro

Directory traversal vulnerability in the Helpdesk Pro plugin before 1.4.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter in a ticket.download_attachment task.

7.5 Élevée · CVSS 3.0

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDHIGH 7.5 (v3.0)
Produit
helpdesk_pro
Corrigée dans
Non précisée
Publiée
20/09/2017
Modifiée
17/06/2026
CWE
CWE-22
  • helpdesk_pro — jusqu'à 1.3.0

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC