QID 154122
Date Published: 2022-09-12
QID 154122: Joomla! Core Full Path Disclosures Vulnerability (CVE-2022-27911)
Joomla! is a free and open-source content management system for publishing web content on websites.
The vulnerability exists due to excessive data output by the application while handling error conditions. A remote attacker can obtain sensitive information on the system, such as full installation path of the web application.
Affected Versions:
Joomla 4.2.0
QID Detection Logic:(Unauthenticated)
This QID checks for vulnerable version of Joomla installed on the target.
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
Solution
Customers are advised to install latest Joomla version.
For more information visit Joomla security advisory [20220801].
For more information visit Joomla security advisory [20220801].
CVEs related to QID 154122
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 20220801 |
|