CVE-2024-40744

Vulnérabilités

CVE-2024-40744

Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.

CRITICAL Convert Forms Composant Source officielle

Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.

9.8 Critique · CVSS 3.1

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDCRITICAL 9.8 (v3.1)
Produit
Convert Forms
Type
Composant
Corrigée dans
4.4.8
Publiée
04/12/2024
Modifiée
17/06/2026
CWE
CWE-434
  • com_osticky — 1.0.0 – 4.4.7
  • convert_forms — 1.0.0 – 1.0.0
  • convert_forms — 1.0.0 – 4.4.8 (exclue)

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC