CVE-2010-2018
NUCLEIBukulokomedia Lokomedia Cms - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in downlot.php in Lokomedia CMS 1.4.1 and 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Exploits (1)
Nuclei Templates (1)
Lokomedia CMS - Local File Inclusion
HIGHVERIFIEDby r3Y3r53
References (5)
Scores
EPSS
0.0012
EPSS Percentile
30.6%
Details
CWE
CWE-22
Status
published
Products (2)
bukulokomedia/lokomedia_cms
1.4.1
bukulokomedia/lokomedia_cms
2.0
Published
May 24, 2010
Tracked Since
Feb 18, 2026