First published: Mon Apr 26 2010(Updated: )
Directory traversal vulnerability in the Shoutbox Pro (com_shoutbox) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Shoutbox | ||
Joomla Shoutbox | =1.2 | |
Joomla Shoutbox | =1.2-beta2 | |
Joomla Shoutbox | =1.3 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-1534 is classified as a medium severity vulnerability due to its potential for unauthorized file access.
To mitigate CVE-2010-1534, upgrade the Joomla Shoutbox component to the latest version which addresses this vulnerability.
CVE-2010-1534 can be exploited by attackers to perform directory traversal attacks, allowing them to read sensitive files on the server.
CVE-2010-1534 affects Joomla Shoutbox versions 1.2, 1.2-beta2, and 1.3.
You can check for CVE-2010-1534 vulnerability by testing your Joomla Shoutbox installation for directory traversal capabilities through the index.php controller.