CVE-2010-1982: Path Traversal
Published May 19, 2010
·Updated
Directory traversal vulnerability in the JA Voice (comjavoice) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.
Affected Software
4 affected components
joomlart Com Javoice=2.0
Joomla Joomla\!
All of the following
joomlart Com Javoice=2.0
Joomla Joomla\!
Event History
May 19, 2010
CVE Published
via MITRE·07:31 PM
Data Sourced
via MITRE·07:31 PM
Description
Data Sourced
08:00 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·08:00 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1982?
CVE-2010-1982 is rated as a medium severity vulnerability due to its potential for directory traversal attacks.
2
How do I fix CVE-2010-1982?
To fix CVE-2010-1982, update the JA Voice component to a patched version provided by the vendor.
3
What systems are affected by CVE-2010-1982?
CVE-2010-1982 affects the JA Voice component version 2.0 for Joomla!.
4
Can CVE-2010-1982 allow attackers to access sensitive information?
Yes, CVE-2010-1982 may allow attackers to read arbitrary files and access sensitive information on the server.
5
Is there a workaround for CVE-2010-1982 if I cannot apply a patch?
A possible workaround for CVE-2010-1982 is to disable the JA Voice component until a patch can be applied.