Lucene search

K
cveMitreCVE-2010-1495
HistoryApr 23, 2010 - 2:30 p.m.

CVE-2010-1495

2010-04-2314:30:01
CWE-22
mitre
web.nvd.nist.gov
31
cve
2010
1495
directory traversal
vulnerability
matamko
joomla

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.045

Percentile

92.5%

Directory traversal vulnerability in the Matamko (com_matamko) component 1.01 for Joomla! allows remote attackers to read arbitrary files via a … (dot dot) in the controller parameter to index.php.

Affected configurations

Nvd
Node
matamkocom_matamkoMatch1.01
AND
joomlajoomla\!
VendorProductVersionCPE
matamkocom_matamko1.01cpe:2.3:a:matamko:com_matamko:1.01:*:*:*:*:*:*:*
joomlajoomla\!*cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

Low

EPSS

0.045

Percentile

92.5%

Related for CVE-2010-1495