First published: Tue Mar 02 2010(Updated: )
Directory traversal vulnerability in the AutartiTarot (com_autartitarot) component 1.0.3 for Joomla! allows remote authenticated users, with "Public Back-end" group permissions, to read arbitrary files via directory traversal sequences in the controller parameter in an edit task to administrator/index.php. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
autartica com AutartiTarot | =1.0.3 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0801 is considered a medium severity vulnerability due to its potential to expose sensitive information.
To fix CVE-2010-0801, you should upgrade the AutartiTarot component to a version that addresses the directory traversal vulnerability.
CVE-2010-0801 affects remote authenticated users with Public Back-end group permissions using AutartiTarot version 1.0.3 on Joomla!
CVE-2010-0801 exploits a directory traversal vulnerability that allows unauthorized access to arbitrary files on the server.
If the vulnerable version of the AutartiTarot component is still in use, CVE-2010-0801 remains a risk for users who have not applied the necessary updates.