CVE-2010-2918
NUCLEIVisites 1.1 RC2 - RCE
Title source: llmDescription
PHP remote file inclusion vulnerability in core/include/myMailer.class.php in the Visites (com_joomla-visites) component 1.1 RC2 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Li0n-PaL · textwebappsphp
https://www.exploit-db.com/exploits/14476
Nuclei Templates (1)
Joomla! Component Visites 1.1 - MosConfig_absolute_path Remote File Inclusion
HIGHby daffainfo
References (5)
Scores
EPSS
0.0160
EPSS Percentile
81.5%
Classification
CWE
CWE-94
Status
draft
Affected Products (1)
visocrea/com_joomla_visites
Timeline
Published
Jul 30, 2010
Tracked Since
Feb 18, 2026