CVE-2010-3203
NUCLEIPicSell 1.0 - Path Traversal
Title source: llmDescription
Directory traversal vulnerability in the PicSell (com_picsell) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dflink parameter in a prevsell dwnfree action to index.php.
Exploits (1)
Nuclei Templates (1)
Joomla! Component PicSell 1.0 - Arbitrary File Retrieval
MEDIUMby daffainfo
Scores
EPSS
0.0398
EPSS Percentile
88.4%
Details
CWE
CWE-22
Status
published
Products (1)
xmlswf/com_picsell
1.0
Published
Sep 03, 2010
Tracked Since
Feb 18, 2026