سيبرانا

قاعدة الثغرات (CVE)

CVE-2026-48939

رفع وتنفيذ PHP عبر مرفقات iCagenda

حرجةمُستغلة فعليًاKEVالتصحيح متوفر: غير متوفر بعد

ميزة إرفاق الملفات تقبل ملفات عشوائية، ما يتيح رفع شفرة PHP وتنفيذها على الخادم.

A vulnerability in the iCagenda extension for Joomla allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.

المنتجات المتأثرة

Productالإصدارات المتأثرةتم الإصلاح في
iCagenda

التغطية على سيبرانا