Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently upload files outside of the /images/stories/ directory. Joomla! Core versions 1.0.x ranging from 1.0.0 and up to and including 1.0.10 are vulnerable.
Update to Joomla! Core version 1.0.11 or latest