- Description
- Remote code execution vulnerability in RSForm!pro component 3.0.0 - 3.3.14 for Joomla was discovered. The issue occurs within the submission export feature and requires administrative access to the export feature.
- Source
- security@joomla.org
- NVD status
- Awaiting Analysis
CVSS 4.0
- Type
- Secondary
- Base score
- 9.2
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:X/V:X/RE:L/U:Clear
- Severity
- CRITICAL
- security@joomla.org
- CWE-94
- Hype score
- Not currently trending
🚨 Alert: CVE-2025-30085 in RSForm!pro component for Joomla (v3.0.0 - 3.3.14) poses a high risk! 🚨 Remote code execution vulnerability found in submission export feature. Requires admin access. 🛡️ Update now to protect your site! #CyberSecurity #Joomla #StaySafe
@SecAideInfo
14 Jun 2025
32 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 Critical Security Flaws Identified in RSJoomla! Extensions Could Expose Joomla Sites to Attack 📌 CVE-2025-30085: Remote Code Execution via RSForm!Pro 📌 CVE-2025-32466: SQL Injection in RSMediaGallery! 📌 CVE-2025-32465: Stored XSS in RSTickets! Joomla administrators
@threatsbank
12 Jun 2025
21 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-30085: CRITICAL] Critical remote code execution flaw in RSForm!pro for Joomla 3.0.0 - 3.3.14. Vulnerability in submission export feature. Admin access needed for exploitation. #CyberSecurity#cve,CVE-2025-30085,#cybersecurity https://t.co/KkMWVq5hJi https://t.co/qgOCwCSD
@CveFindCom
11 Jun 2025
43 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes