Showing 1 vulnerability on this page for Easy Shop

Signals CISA KEV Ransomware Nuclei
Joomtech vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Joomla! Component Easy Shop 1.2.3 Local File Inclusion

Joomla! Component Easy Shop 1.2.3 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary files by supplying base64-encoded file paths. Attackers can send GET requests to index.php with the option parameter set to com_easyshop, task set to ajax.loadImage, and a base64-encoded file path in the file parameter to retrieve sensitive files like configuration.php and system files.

CWE-98Jun 19, 2026
CVSS6.9v4.0EPSS0.542%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX