6.8
CVSSv2

CVE-2010-2507

Published: 28/06/2010 Updated: 17/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in the Picasa2Gallery (com_picasa2gallery) component 1.2.8 and previous versions for Joomla! allows remote malicious users to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

masselink com_picasa2gallery 1.2.5

masselink com_picasa2gallery 1.2.2

masselink com_picasa2gallery 1.1.7

masselink com_picasa2gallery 1.1.0

masselink com_picasa2gallery

masselink com_picasa2gallery 1.2.7

masselink com_picasa2gallery 1.0.0

masselink com_picasa2gallery 1.2.1

masselink com_picasa2gallery 1.1.9

Exploits

[!]===========================================================================[!] [~] Joomla Component Picasa2Gallery LFI vulnerability [~] Author : kaMtiEz (kamzcrew@yahoocom) [~] Homepage : wwwindonesiancodercom [~] Date : 22 june, 2010 [!]===========================================================================[!] [ Software Info ...