CVE-2010-2045
NUCLEIDionesoft Com Dioneformwizard - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Chip d3 bi0s · textwebappsphp
https://www.exploit-db.com/exploits/12595
Nuclei Templates (1)
Joomla! Component FDione Form Wizard 1.0.2 - Local File Inclusion
HIGHby daffainfo
References (6)
Scores
EPSS
0.0544
EPSS Percentile
90.2%
Details
CWE
CWE-22
Status
published
Products (1)
dionesoft/com_dioneformwizard
1.0.2
Published
May 25, 2010
Tracked Since
Feb 18, 2026