First published: Tue May 25 2010(Updated: )
Directory traversal vulnerability in the Percha Downloads Attach (com_perchadownloadsattach) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Percha com perchadownloadsattach | =1.1 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2037 has a medium severity rating as it allows remote attackers to read arbitrary files.
To mitigate CVE-2010-2037, ensure that the Percha Downloads Attach component is updated to a version that is not vulnerable to directory traversal.
CVE-2010-2037 specifically affects the Percha Downloads Attach component version 1.1 for Joomla!, not Joomla! itself.
CVE-2010-2037 can potentially allow unauthorized access to sensitive files on the server.
More information about CVE-2010-2037 can typically be found through security advisories and vulnerability databases.