Security Advisory

CVE-2025-22213

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-11 16:07:28
Last updated 2025-03-11 19:24:44
Assigner Joomla
State PUBLISHED

Description

Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.