First published: Tue Jun 01 2010(Updated: )
Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Harmistechnology Com Jeajaxeventcalendar | =1.0.1 | |
Harmistechnology Com Jeajaxeventcalendar | =1.0.3 | |
Joomla Joomla\! |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.