xsspresso
xsspresso
Tags/ Joomla

Joomla

3 writeups tagged with Joomla

WebMediumLinux

VHL — CMS101

Joomla CMS on CentOS with ProFTPD. Exploited a known Joomla CVE for unauthenticated RCE via the com_media upload component.

#Joomla#CVE#RCE
Feb 15, 2025Virtual Hacking Labs
WebMediumLinux

VHL — CMS01

Joomla CMS on CentOS with anonymous FTP. Exploited a Joomla authenticated RCE CVE via the template editor for code execution.

#Joomla#RCE#FTP
Feb 13, 2025Virtual Hacking Labs
WebEasyLinux

HTB — Devvortex

Joomla CVE-2023-23752 info disclosure leaks database creds. Authenticated template RCE for shell. Apport crash handler sudo exploit for root.

#Joomla#CVE-2023-23752#RCE
Jan 16, 2025HackTheBox