CVE-2008-4764: Path Traversal
Published Oct 28, 2008
·Updated
Directory traversal vulnerability in the eXtplorer module (comextplorer) 2.0.0 RC2 and earlier in Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter in a showerror action.
Affected Software
2 affected components
eXtplorer Com Extplorer<=2.0.0
Joomla Joomla\!
Event History
Oct 28, 2008
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
02:03 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-4764?
CVE-2008-4764 is considered a high severity vulnerability due to its potential for unauthorized file access.
2
How do I fix CVE-2008-4764?
To fix CVE-2008-4764, upgrade the eXtplorer module to version 2.0.0 or later.
3
Who is affected by CVE-2008-4764?
CVE-2008-4764 affects Joomla! users running the eXtplorer module version 2.0.0 RC2 or earlier.
4
What type of vulnerability is CVE-2008-4764?
CVE-2008-4764 is a directory traversal vulnerability that allows attackers to read arbitrary files.
5
What can attackers do with CVE-2008-4764?
Attackers can exploit CVE-2008-4764 to gain access to sensitive files on the server by manipulating the directory path.