Lucene search

K
cve[email protected]CVE-2010-1722
HistoryMay 04, 2010 - 4:00 p.m.

CVE-2010-1722

2010-05-0416:00:36
CWE-22
web.nvd.nist.gov
29
cve
2010
1722
directory traversal
vulnerability
online market
joomla

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.2 Medium

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.6%

Directory traversal vulnerability in the Online Market (com_market) component 2.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a … (dot dot) in the controller parameter to index.php.

Affected configurations

NVD
Node
dev.pucit.edu.pkcom_marketMatch2.0
AND
joomlajoomla\!

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

6.2 Medium

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.6%