3722 vulnerabilidades · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2010-1478
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.3%
2010 2 PoCs

Directory traversal vulnerability in the Ternaria Informatica Jfeedback! (com_jfeedback) component 1.2 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1354
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.1%
2010 2 PoCs

Directory traversal vulnerability in the VJDEO (com_vjdeo) component 1.0 and 1.0.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.

CVE-2010-1471
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
6.4%
2010 2 PoCs

Directory traversal vulnerability in the AddressBook (com_addressbook) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-2050
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.0%
2010 1 PoC

Directory traversal vulnerability in the Moron Solutions MS Comment (com_mscomment) component 0.8.0b for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1982
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.0%
2010 1 PoC

Directory traversal vulnerability in the JA Voice (com_javoice) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.

CVE-2010-0985
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.5%
2010 0 PoCs

Directory traversal vulnerability in the Abbreviations Manager (com_abbrev) component 1.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php. NOTE: some of these details are obtained from third party information.

CVE-2010-2037
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.6%
2010 1 PoC

Directory traversal vulnerability in the Percha Downloads Attach (com_perchadownloadsattach) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-2122
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2010 1 PoC

Directory traversal vulnerability in the SimpleDownload (com_simpledownload) component before 0.9.6 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-2033
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.4%
2010 1 PoC

Directory traversal vulnerability in the Percha Multicategory Article (com_perchacategoriestree) component 0.6 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-2918
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.6%
2010 1 PoC

PHP remote file inclusion vulnerability in core/include/myMailer.class.php in the Visites (com_joomla-visites) component 1.1 RC2 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2010-1870
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
92.5%
2010 5 PoCs

The OGNL extensive expression evaluation capability in XWork in Struts 2.0.0 through 2.1.8.1, as used in Atlassian Fisheye, Crucible, and possibly other products, uses a permissive whitelist, which allows remote attackers to modify server-side context objects and bypass the "#" protection mechanism in ParameterInterceptors via the (1) #context, (2) #_memberAccess, (3) #root, (4) #this, (5) #_typeResolver, (6) #_classResolver, (7) #_traceEvaluations, (8) #_lastEvaluation, (9) #_keepLastEvaluation, and possibly other OGNL context variables, a different vulnerability than CVE-2008-6504.

CVE-2010-1531
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
2.6%
2010 2 PoCs

Directory traversal vulnerability in the redSHOP (com_redshop) component 1.0.x for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.

CVE-2010-1957
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.7%
2010 2 PoCs

Directory traversal vulnerability in the Love Factory (com_lovefactory) component 1.3.4 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1714
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.8%
2010 2 PoCs

Directory traversal vulnerability in the Arcade Games (com_arcadegames) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1953
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.6%
2010 1 PoC

Directory traversal vulnerability in the iNetLanka Multiple Map (com_multimap) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-4769
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.3%
2010 0 PoCs

Directory traversal vulnerability in the Jimtawl (com_jimtawl) component 1.0.2 Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the task parameter to index.php.

CVE-2010-1586
Software Genérico General ⚡ nuclei
N/A
UNKNOWN
EPSS
0.4%
2010 1 PoC

Open redirect vulnerability in red2301.html in HP System Management Homepage (SMH) 2.x.x.x allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the RedirectUrl parameter.

CVE-2010-1472
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
4.8%
2010 2 PoCs

Directory traversal vulnerability in the Daily Horoscope (com_horoscope) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1722
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.0%
2010 2 PoCs

Directory traversal vulnerability in the Online Market (com_market) component 2.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

CVE-2010-1340
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.8%
2010 1 PoC

Directory traversal vulnerability in jresearch.php in the J!Research (com_jresearch) component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.