TROYANOSYVIRUS
Voltar para CVEs

CVE-2010-1305

N/A

Descricao

Directory traversal vulnerability in jinventory.php in the JInventory (com_jinventory) component 1.23.02 and possibly other versions before 1.26.03, a module for Joomla!, allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado4/8/2010
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

joomla:joomla\!joomlamo:com_jinventory

Fraquezas (CWE)

CWE-22

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.