7.5
CVSSv3

CVE-2018-6397

Published: 30/01/2018 Updated: 15/02/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla! via the list.php folder parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

joomlacalendars picture calendar 3.1.4

Exploits

# # # # # # Exploit Title: Joomla! Component Picture Calendar for Joomla 314 - Directory Traversal # Dork: N/A # Date: 30012018 # Vendor Homepage: wwwjoomlacalendarscom/ # Software Link: extensionsjoomlaorg/extensions/extension/calendars-a-events/events/picture-calendar-for-joomla/ # Version: 314 # Category: Webapps # Teste ...
Joomla! Picture Calendar for Joomla component version 314 suffers from a directory traversal vulnerability ...