EIP-2026-108914
PRE-CVEJoomla! Plugin Captcha 4.5.1 - Local File Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-108914. PoCs published by dun.
AI-analyzed exploit summary This exploit demonstrates a Local File Disclosure (LFD) vulnerability in Joomla Captcha Plugin <= 4.5.1. The vulnerability arises from unsanitized user input in the 'lng' parameter, allowing directory traversal to read arbitrary files on the server when magic_quotes_gpc is disabled.
Description
Joomla! Plugin Captcha 4.5.1 - Local File Disclosure
Exploits (1)
This exploit demonstrates a Local File Disclosure (LFD) vulnerability in Joomla Captcha Plugin <= 4.5.1. The vulnerability arises from unsanitized user input in the 'lng' parameter, allowing directory traversal to read arbitrary files on the server when magic_quotes_gpc is disabled.