CVE-2024-40744

Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.
Configurations

Configuration 1 (hide)

cpe:2.3:a:convert_forms_project:convert_forms:*:*:*:*:*:joomla\!:*:*

History

04 Jun 2025, 20:57

Type Values Removed Values Added
References () https://www.tassos.gr/joomla-extensions/convert-forms - () https://www.tassos.gr/joomla-extensions/convert-forms - Product
CPE cpe:2.3:a:convert_forms_project:convert_forms:*:*:*:*:*:joomla\!:*:*
First Time Convert Forms Project convert Forms
Convert Forms Project

05 Dec 2024, 17:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
Summary
  • (es) Carga de archivos sin restricciones a través de una omisión de seguridad en el componente Convert Forms para Joomla en versiones anteriores a 4.4.8.

04 Dec 2024, 17:15

Type Values Removed Values Added
Summary (en) Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.6. (en) Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.

04 Dec 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-04 15:15

Updated : 2025-06-04 20:57


NVD link : CVE-2024-40744

Mitre link : CVE-2024-40744

CVE.ORG link : CVE-2024-40744


JSON object : View

Products Affected

convert_forms_project

  • convert_forms
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type