cve/2016/CVE-2016-9836.md
2024-06-18 02:51:15 +02:00

1.0 KiB

CVE-2016-9836

Description

The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the .php6, .php7, .phtml, and .phpt extensions. Additionally, JHelperMedia::canUpload() did not blacklist these file extensions as uploadable file types.

POC

Reference

Github