Skip to main content

Vendor/product archive

admiror-design-studio / admirorframes CVEs

Beta · best-effort

3 CVEs tagged to admiror-design-studio / admirorframes0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2024-5737

Published Jun 28, 2024

Script afGdStream.php in AdmirorFrames Joomla! extension doesn’t specify a content type and as a result default (text/html) is used. An attacker may embed HTML tags directly in im…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-5736

Published Jun 28, 2024

Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from local…

CVSS 8.2 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5735

Published Jun 28, 2024

Full Path Disclosure vulnerability in AdmirorFrames Joomla! extension in afHelper.php script allows an unauthorised attacker to retrieve location of web root folder. This issue af…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1