Joomla Core - Remote Code Execution Vulnerability


Description   Browser user-agent is not filtered properly while saving the session values into the database which leads to a Remote Code Execution vulnerability in Joomla.
     
Default
configuration
 
Profiles High Medium Low Internet
Action Block Block Block Block
Alarm Level Major Major Major Major
     
References   URL: https://developer.joomla.org/security-centre/630-20151214-core-remote-code-execution-vulnerability.html
     
Available since   ASQ v5.0.0
     
Protects   Joomla Core Multiple Vulnerabilities Fixed by 3.4.6
100 last CVE   CVE-2015-8565
CVE-2015-8564
CVE-2015-8563
CVE-2015-8562


 
 
 
 
 Risk level 
High