VYPR

com_rsfiles

by Joomla

CVEs (2)

  • CVE-2007-4504Aug 23, 2007
    risk 0.04cvss epss 0.09

    Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the path parameter in a files.display action.

  • CVE-2026-57827CriJul 11, 2026
    risk 0.00cvss 9.8epss 0.02

    Joomla Extension - rsjoomla.com - Unauthenticated file upload in RSFiles component < 1.17.12 - The Joomla extension RSFiles is vulnerable to an unauthenticated arbitrary file upload that allows uploading executable files and leads to full RCE.