CVE-2010-1081

NUCLEI

Joomla! <1.5.2 - Path Traversal

Title source: llm

Description

Directory traversal vulnerability in the Community Polls (com_communitypolls) component 1.5.2, and possibly earlier, for Core Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by kaMtiEz · textwebappsphp
https://www.exploit-db.com/exploits/11511

Nuclei Templates (1)

Joomla! Component com_communitypolls 1.5.2 - Local File Inclusion
MEDIUMby daffainfo

Scores

EPSS 0.0519
EPSS Percentile 89.9%

Details

CWE
CWE-22
Status published
Products (12)
corejoomla/com_communitypolls 1.0.1
corejoomla/com_communitypolls 1.0.2
corejoomla/com_communitypolls 1.0.3
corejoomla/com_communitypolls 1.0.4
corejoomla/com_communitypolls 1.0.5
corejoomla/com_communitypolls 1.0.6
corejoomla/com_communitypolls 1.0.7
corejoomla/com_communitypolls 1.0.8
corejoomla/com_communitypolls 1.0.9
corejoomla/com_communitypolls 1.5.0
... and 2 more
Published Mar 23, 2010
Tracked Since Feb 18, 2026