CyberRota Analysis
AI-GeneratedThe Fabrik Joomla extension is vulnerable to unauthenticated remote code execution due to a flaw in its PHP form element, allowing attackers to execute arbitrary code on the server. This critical vulnerability (CVSS 10.0) poses a significant risk to any Joomla installations using affected versions prior to 4.7.3. Organizations utilizing this extension should prioritize immediate updates to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Joomla Extension - fabrikar.com - Unauthenticated remote code execution via PHP form element in Fabrik < 4.7.2 - The PHP form element is vulnerable to the execution of user provided codes.