CVE-2025-50057 MEDIUM

CVE-2025-50057: Extension - rsjoomla.com - DOS vulnerability RSFiles! component 1.16.3-1.17.7 for Joomla

Vendor Rsjoomla.com
Product RSFiles! component for Joomla
Weakness CWE-400
Published July 18, 2025
Last update July 20, 2025

CVSS base score

6.9/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

What the vulnerability does

01Description

A DOS vulnerability in RSFiles! component 1.16.3-1.17.7 Joomla was discovered. The issue allows unauthenticated remote attackers to deny access to service via the search feature.

Explanation of Vulnerability in Simple Terms

02Summary

RSFiles! component for Joomla versions 1.16.3 through 1.17.7 contains an uncontrolled resource consumption vulnerability. An attacker can send network requests that consume excessive server resources, potentially causing denial of service. No authentication or user interaction is required to trigger the issue.

What an attacker can do

03Attacker Capabilities

Consume excessive server resources to degrade or disable the site.

Potential impact on your site

04Site Impact

Your site may become slow or unresponsive due to resource exhaustion attacks.

Conditions required to exploit

05Prerequisites

Network access to the Joomla site; no authentication required.

Key dates

06Disclosure timeline

July 18, 2025 CVE published
July 20, 2025 Record updated