CVE-2010-3203
NUCLEIcom_picsell 1.0 - Path Traversal via dflink Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-3203. PoCs published by Craw. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in the 'com_picsell' component of Joomla, allowing unauthorized file disclosure by manipulating the 'dflink' parameter.
Description
Directory traversal vulnerability in the PicSell (com_picsell) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dflink parameter in a prevsell dwnfree action to index.php.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in the 'com_picsell' component of Joomla, allowing unauthorized file disclosure by manipulating the 'dflink' parameter.