CVE-2008-1849: Path Traversal
Directory traversal vulnerability in index.php in the joomlaXplorer (comjoomlaxplorer) Mambo/Joomla! component 1.6.2 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the dir parameter in a showerror action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1849?
CVE-2008-1849 is considered a high severity vulnerability due to its potential to allow unauthorized directory traversal.
How do I fix CVE-2008-1849?
To mitigate CVE-2008-1849, upgrade to a patched version of the joomlaXplorer component that exceeds version 1.6.2.
What systems are affected by CVE-2008-1849?
CVE-2008-1849 affects the joomlaXplorer component in Joomla and Mambo installations up to version 1.6.2.
What is the exploit method for CVE-2008-1849?
The exploit for CVE-2008-1849 involves manipulating the 'dir' parameter in the show_error action to perform directory traversal.
Are there known exploits for CVE-2008-1849?
Yes, there are known exploits for CVE-2008-1849 which demonstrate how to leverage the directory traversal vulnerability.