CVE-2010-2259
NUCLEITamlyncreative Com Bfsurvey Profree < 1.3.0 - Path Traversal
Title source: ruleDescription
Directory traversal vulnerability in the BF Survey (com_bfsurvey) component for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
Exploits (1)
Nuclei Templates (1)
Joomla! Component com_bfsurvey - Local File Inclusion
HIGHby daffainfo
References (6)
Scores
EPSS
0.0362
EPSS Percentile
87.8%
Details
CWE
CWE-22
Status
published
Products (3)
tamlyncreative/com_bfsurvey_basic
< 1.1
tamlyncreative/com_bfsurvey_pro
< 1.3.0
tamlyncreative/com_bfsurvey_profree
1.2.6
Published
Jun 09, 2010
Tracked Since
Feb 18, 2026