CVE-2011-4908
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 56%
from disclosure to weapon0 days
Published on NVDFeb 12
1st PoCJul 28
metasploitJul 22
exploitation probability
56%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
TinyBrowser plugin for Joomla! before 1.5.13 allows arbitrary file upload via upload.php.
Affected products
Joomla! · TinyBrowser Pluginpublic PoCs found — 2✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/9926exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/9296⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.