7.5
CVSSv2

CVE-2010-2045

Published: 25/05/2010 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote malicious users to read arbitrary files via directory traversal sequences in the controller parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

dionesoft com_dioneformwizard 1.0.2

Exploits

----------------------------------------------------------------------------------------- Joomla Component FDione Form Wizard lfi vulnerability ----------------------------------------------------------------------------------------- Author : Chip D3 Bi0s Email : chipdebios[alt+64]gmailcom Date : 2010-05-13 Impact : Exposure of sensitive info ...