First published: Thu Apr 29 2010(Updated: )
Directory traversal vulnerability in the JA Comment (com_jacomment) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomlamart Com JAComment | ||
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2010-1601 is considered medium due to the potential for unauthorized file access.
To fix CVE-2010-1601, you should update the JA Comment component of Joomla! to the latest version that addresses this vulnerability.
CVE-2010-1601 is caused by a directory traversal vulnerability that allows remote attackers to read files by manipulating the view parameter.
Users of the JA Comment component for Joomla! are affected by CVE-2010-1601.
The implications of CVE-2010-1601 include the possibility for attackers to access sensitive files on the server.