Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-6008. PoCs published by Ihsan Sencan. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file download vulnerability in Joomla! Component Jtag Members Directory 5.3.7. The PoC shows how an attacker can download arbitrary files by manipulating the 'download_file' parameter in the URL.
Description
Arbitrary File Download exists in the Jtag Members Directory 5.3.7 component for Joomla! via the download_file parameter.
Exploits (1)
This exploit demonstrates an arbitrary file download vulnerability in Joomla! Component Jtag Members Directory 5.3.7. The PoC shows how an attacker can download arbitrary files by manipulating the 'download_file' parameter in the URL.
Nuclei Templates (1)
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N