PT-2026-61683 · Joomla · Gridbox
CVSS v4.0
9.4
Critical
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H |
Name of the Vulnerable Software and Affected Versions
Gridbox versions prior to 1.6.0
Description
The Joomla extension Gridbox contains an authentication bypass that could allow an authenticated user to gain full administrative access.
Recommendations
Update Gridbox to version 1.6.0 or later.
Fix
Authentication Bypass Using an Alternate Path or Channel
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gridbox