Security Advisory

CVE-2017-11364

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-08-02 14:00:00
Last updated 2024-08-05 18:05:30
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The CMS installer in Joomla! before 3.7.4 does not verify a user's ownership of a webspace, which allows remote authenticated users to gain control of the target application by leveraging Certificate Transparency logs.