Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-3426. PoCs published by Chip d3 bi0s. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Jphone 1.0 Alpha 3 for Joomla. The vulnerability arises from unsanitized user input in the 'controller' parameter, allowing path traversal and inclusion of arbitrary files.
Description
Directory traversal vulnerability in jphone.php in the JPhone (com_jphone) component 1.0 Alpha 3 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Jphone 1.0 Alpha 3 for Joomla. The vulnerability arises from unsanitized user input in the 'controller' parameter, allowing path traversal and inclusion of arbitrary files.