CVE-2010-0982: Path Traversal
Published Mar 16, 2010
·Updated
Directory traversal vulnerability in the CARTwebERP (comcartweberp) component 1.56.75 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
Affected Software
4 affected components
Joomlamo Com Cartweberp=1.56.75
Joomla Joomla\!
All of the following
Joomlamo Com Cartweberp=1.56.75
Joomla Joomla\!
Event History
Mar 16, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·07:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0982?
CVE-2010-0982 is classified as a critical vulnerability due to its potential to allow remote attackers to read arbitrary files.
2
How do I fix CVE-2010-0982?
To fix CVE-2010-0982, update the CARTwebERP component to a version that patches this directory traversal vulnerability.
3
Which software is affected by CVE-2010-0982?
CVE-2010-0982 affects the CARTwebERP component version 1.56.75 for Joomla!.
4
What type of vulnerability is CVE-2010-0982?
CVE-2010-0982 is a directory traversal vulnerability that enables unauthorized file access.
5
Who can exploit CVE-2010-0982?
Any remote attacker can exploit CVE-2010-0982 by manipulating the controller parameter in a request to index.php.