First published: Mon Apr 12 2010(Updated: )
Directory traversal vulnerability in the LoginBox Pro (com_loginbox) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla! | ||
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-1353 has a medium severity rating due to its potential to allow attackers to read sensitive files on the server.
To fix CVE-2010-1353, update the LoginBox Pro component to the latest version provided by the vendor.
CVE-2010-1353 could allow unauthorized access to sensitive files, compromising the integrity and security of your Joomla! site.
If your site is updated to remove the vulnerable version of the LoginBox Pro component, CVE-2010-1353 should no longer pose a threat.
Any Joomla! site using the vulnerable LoginBox Pro component is at risk from CVE-2010-1353.