CVE-2009-3318
NUCLEIRoland Breedveld Album (com_album) 1.14 - Path Traversal via Target Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-3318. PoCs published by DreamTurk. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in Joomla's com_album component (version 1.14). The PoC uses a URL parameter to traverse directories, potentially allowing unauthorized access to sensitive files.
Description
Directory traversal vulnerability in the Roland Breedveld Album (com_album) component 1.14 for Joomla! allows remote attackers to access arbitrary directories and have unspecified other impact via a .. (dot dot) in the target parameter to index.php.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in Joomla's com_album component (version 1.14). The PoC uses a URL parameter to traverse directories, potentially allowing unauthorized access to sensitive files.