CVE-2010-1470: Path Traversal
Published Apr 19, 2010
·Updated
Directory traversal vulnerability in the Web TV (comwebtv) component 1.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
Affected Software
4 affected components
Dev.pucit.edu.pk Com Webtv=1.0
Joomla joomla
All of the following
Dev.pucit.edu.pk Com Webtv=1.0
Joomla joomla
Event History
Apr 19, 2010
CVE Published
via MITRE·07:04 PM
Data Sourced
via MITRE·07:04 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·07:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1470?
CVE-2010-1470 is rated as a medium severity vulnerability due to its potential for file disclosure.
2
How do I fix CVE-2010-1470?
To fix CVE-2010-1470, update to a patched version of the com_webtv component or restrict access to the vulnerable functionality.
3
What types of attacks can be performed using CVE-2010-1470?
Using CVE-2010-1470, an attacker can exploit directory traversal to read sensitive files on the server.
4
Which Joomla! component is affected by CVE-2010-1470?
CVE-2010-1470 affects the Web TV component (com_webtv) version 1.0 for Joomla!.
5
Is CVE-2010-1470 still a risk for Joomla! sites?
CVE-2010-1470 remains a risk for Joomla! sites using the vulnerable version of the com_webtv component.