CVE-2011-4908: Tiny Tinybrowser

Critical severity, CVSS 9.8. EPSS: 55.8% chance of exploitation in the next 30 days.

TinyBrowser plugin for Joomla! before 1.5.13 allows arbitrary file upload via upload.php.

Affected products

  • Tiny Tinybrowser: before 1.5.13 (fixed in 1.5.13)

Published 2020-02-12. Last modified 2026-06-16.