First published: Tue Oct 28 2008(Updated: )
Directory traversal vulnerability in the eXtplorer module (com_extplorer) 2.0.0 RC2 and earlier in Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter in a show_error action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
eXtplorer | <=2.0.0 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4764 is considered a high severity vulnerability due to its potential for unauthorized file access.
To fix CVE-2008-4764, upgrade the eXtplorer module to version 2.0.0 or later.
CVE-2008-4764 affects Joomla! users running the eXtplorer module version 2.0.0 RC2 or earlier.
CVE-2008-4764 is a directory traversal vulnerability that allows attackers to read arbitrary files.
Attackers can exploit CVE-2008-4764 to gain access to sensitive files on the server by manipulating the directory path.