EIP-2026-108333
PRE-CVEJoomla! Component com_docman - Multiple Vulnerabilities
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108333. PoCs published by Hugo Santiago.
AI-analyzed exploit summary This exploit demonstrates a Full Path Disclosure (FPD) and Local File Disclosure/Include (LFD/LFI) vulnerability in the Joomla docman component. It leverages improper input validation in the 'file' parameter to disclose server paths and read arbitrary files, including sensitive configuration files.
Description
Joomla! Component com_docman - Multiple Vulnerabilities
Exploits (1)
This exploit demonstrates a Full Path Disclosure (FPD) and Local File Disclosure/Include (LFD/LFI) vulnerability in the Joomla docman component. It leverages improper input validation in the 'file' parameter to disclose server paths and read arbitrary files, including sensitive configuration files.