CVE-2017-7989
In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate MIME type checks allowed low-privilege users to upload swf files even if they were explicitly forbi…
MEDIUM
Joomla CMS
Description
In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate MIME type checks allowed low-privilege users to upload swf files even if they were explicitly forbidden.
Sévérité
6.5
Moyenne · CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 6.5 (v3.0) |
Produit et versions
- Produit
- Joomla CMS
- Corrigée dans
- Non précisée
- Publiée
- 25/04/2017
- Modifiée
- 17/06/2026
- CWE
- CWE-434
Versions concernées
- 3.2.0 – 3.2.0
- 3.2.1 – 3.2.1
- 3.2.2 – 3.2.2
- 3.2.3 – 3.2.3
- 3.2.4 – 3.2.4
- 3.3.0 – 3.3.0
- 3.3.1 – 3.3.1
- 3.3.2 – 3.3.2
- 3.3.3 – 3.3.3
- 3.3.4 – 3.3.4
- 3.3.5 – 3.3.5
- 3.4.0 – 3.4.0
16 autres
- 3.4.1 – 3.4.1
- 3.4.2 – 3.4.2
- 3.4.3 – 3.4.3
- 3.4.4 – 3.4.4
- 3.4.5 – 3.4.5
- 3.4.6 – 3.4.6
- 3.4.7 – 3.4.7
- 3.4.8 – 3.4.8
- 3.5.0 – 3.5.0
- 3.5.1 – 3.5.1
- 3.6.0 – 3.6.0
- 3.6.1 – 3.6.1
- 3.6.2 – 3.6.2
- 3.6.3 – 3.6.3
- 3.6.4 – 3.6.4
- 3.6.5 – 3.6.5
Sources
- NVD CVE-2017-7989 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC