Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-2129. PoCs published by Valentin.
AI-analyzed exploit summary This is a writeup describing a Local File Inclusion (LFI) vulnerability in JE Ajax Event Calendar 1.0.3. The exploit demonstrates how an attacker can read arbitrary files (e.g., /etc/passwd) via path traversal in the 'view' parameter.
Description
Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.
Exploits (1)
This is a writeup describing a Local File Inclusion (LFI) vulnerability in JE Ajax Event Calendar 1.0.3. The exploit demonstrates how an attacker can read arbitrary files (e.g., /etc/passwd) via path traversal in the 'view' parameter.