3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-16288
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
62.7%
2018 1 PoC

LG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.

CVE-2018-7662
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2018 0 PoCs

Couch through 2.0 allows remote attackers to discover the full path via a direct request to includes/mysql2i/mysql2i.func.php or addons/phpmailer/phpmailer.php.

CVE-2018-15138
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
53.3%
2018 1 PoC

Ericsson-LG iPECS NMS 30M allows directory traversal via ipecs-cm/download?filename=../ URIs.

CVE-2010-2036
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.6%
2010 1 PoC

Directory traversal vulnerability in the Percha Fields Attach (com_perchafieldsattach) component 1.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1307
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.6%
2010 2 PoCs

Directory traversal vulnerability in the Magic Updater (com_joomlaupdater) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-5286
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
32.2%
2010 1 PoC

Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-2857
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.0%
2010 1 PoC

Directory traversal vulnerability in the Music Manager component for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the cid parameter to album.html.

CVE-2010-1658
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.8%
2010 2 PoCs

Directory traversal vulnerability in the Code-Garage NoticeBoard (com_noticeboard) component 1.3 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1981
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.7%
2010 2 PoCs

Directory traversal vulnerability in the Fabrik (com_fabrik) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-4617
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2010 0 PoCs

Directory traversal vulnerability in the JotLoader (com_jotloader) component 2.2.1 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the section parameter to index.php.

CVE-2010-1353
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.3%
2010 2 PoCs

Directory traversal vulnerability in the LoginBox Pro (com_loginbox) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.

CVE-2010-1532
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.7%
2010 2 PoCs

Directory traversal vulnerability in the givesight PowerMail Pro (com_powermail) component 1.5.3 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1306
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.3%
2010 2 PoCs

Directory traversal vulnerability in the Picasa (com_joomlapicasa2) component 2.0 and 2.0.5 for Joomla! allows remote attackers to read arbitrary local files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.

CVE-2010-2682
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.9%
2010 1 PoC

Directory traversal vulnerability in the Realtyna Translator (com_realtyna) component 1.0.15 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-0467
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2010 1 PoC

Directory traversal vulnerability in the ccNewsletter (com_ccnewsletter) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter in a ccnewsletter action to index.php.

CVE-2010-1875
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.9%
2010 0 PoCs

Directory traversal vulnerability in the Real Estate Property (com_properties) component 3.1.22-03 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.

CVE-2010-1723
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.8%
2010 1 PoC

Directory traversal vulnerability in the iNetLanka Contact Us Draw Root Map (com_drawroot) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1429
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
27.4%
2010 1 PoC

Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 allows remote attackers to obtain sensitive information about "deployed web contexts" via a request to the status servlet, as demonstrated by a full=true query string. NOTE: this issue exists because of a CVE-2008-3273 regression.

CVE-2010-1533
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.0%
2010 1 PoC

Directory traversal vulnerability in the TweetLA (com_tweetla) component 1.0.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-5028
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
2.3%
2010 0 PoCs

SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to index.php.