CVE-2010-2045

NUCLEI

Dionesoft Com Dioneformwizard - Path Traversal

Title source: rule

Description

Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Chip d3 bi0s · textwebappsphp
https://www.exploit-db.com/exploits/12595

Nuclei Templates (1)

Joomla! Component FDione Form Wizard 1.0.2 - Local File Inclusion
HIGHby daffainfo

Scores

EPSS 0.0544
EPSS Percentile 90.2%

Details

CWE
CWE-22
Status published
Products (1)
dionesoft/com_dioneformwizard 1.0.2
Published May 25, 2010
Tracked Since Feb 18, 2026