CVE-2010-0676: Path Traversal
Published Feb 22, 2010
·Updated
Directory traversal vulnerability in index.php in the RWCards (comrwcards) component 3.0.18 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter.
Affected Software
4 affected components
Weberr Com Rwcards=3.0.18
Joomla Joomla\!
All of the following
Weberr Com Rwcards=3.0.18
Joomla Joomla\!
Event History
Feb 22, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
08:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·08:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0676?
CVE-2010-0676 has been rated as high severity due to its potential to allow unauthorized file access.
2
How do I fix CVE-2010-0676?
To fix CVE-2010-0676, update the RWCards component to the latest version or apply any available patches.
3
What are the risks of CVE-2010-0676?
The main risk of CVE-2010-0676 is that it allows attackers to read sensitive files on the server, leading to data exposure.
4
Which versions of RWCards are affected by CVE-2010-0676?
CVE-2010-0676 specifically affects RWCards version 3.0.18.
5
Can CVE-2010-0676 be exploited remotely?
Yes, CVE-2010-0676 can be exploited remotely, allowing attackers to read files without needing local access.