#VU54578 Improper access control in Joomla! - CVE-2021-26038
Published: July 7, 2021
Joomla!
Joomla!
Description
The vulnerability allows a remote user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions within the com_installer component. the iInstall action in com_installer lacks the required hardcoded ACL checks for superusers. A remote unprivileged user can compromise the affected installation of Joomla! under certain circumstances.