First published: Mon Feb 22 2010(Updated: )
Directory traversal vulnerability in index.php in the RWCards (com_rwcards) component 3.0.18 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
weberr RWCards | =3.0.18 | |
Joomla | ||
All of | ||
weberr RWCards | =3.0.18 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0676 has been rated as high severity due to its potential to allow unauthorized file access.
To fix CVE-2010-0676, update the RWCards component to the latest version or apply any available patches.
The main risk of CVE-2010-0676 is that it allows attackers to read sensitive files on the server, leading to data exposure.
CVE-2010-0676 specifically affects RWCards version 3.0.18.
Yes, CVE-2010-0676 can be exploited remotely, allowing attackers to read files without needing local access.