CVE-2010-1306: Path Traversal
Directory traversal vulnerability in the Picasa (comjoomlapicasa2) component 2.0 and 2.0.5 for Joomla! allows remote attackers to read arbitrary local files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1306?
CVE-2010-1306 is classified as a high severity vulnerability due to its potential for unauthorized access to local files.
How do I fix CVE-2010-1306?
To fix CVE-2010-1306, upgrade the Picasa component to version 2.0.6 or later where the vulnerability is patched.
What is the affected software for CVE-2010-1306?
CVE-2010-1306 affects versions 2.0.0 through 2.0.5 of the Picasa component for Joomla!.
Can CVE-2010-1306 be exploited remotely?
Yes, CVE-2010-1306 can be exploited remotely by attackers to read arbitrary local files.
What type of vulnerability is CVE-2010-1306?
CVE-2010-1306 is a directory traversal vulnerability allowing unauthorized file access.