Security Advisory

CVE-2010-2129

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-06-01 21:00:00
Last updated 2024-08-07 02:25:07
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.