CVE-2021-26040
Description
An issue was discovered in Joomla! 4.0.0. The media manager does not correctly check the user's permissions before executing a file deletion command.
CWE
- (none)
Affected
- Joomla! Project / Joomla! CMS — v=4.0.0 [affected]
CVSS
- (none)
References
- https://developer.joomla.org/security-centre/861-20210801-core-insufficient-access-control-for-com-media-deletion-endpoint x_refsource_MISC, vendor-advisory
Source
cvelistV5-main/cves/2021/26xxx/CVE-2021-26040.json