Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Devilz Tm

#49213of 53,634
5Total CVSS
Vulnerabilities · 1
PT-2010-3214
5.0
2010-04-26
Joomla · Myblog · CVE-2010-1540
**Name of the Vulnerable Software and Affected Versions** MyBlog (com myblog) component version 3.0.329 for Joomla! **Description** The issue allows remote attackers to read arbitrary files via a .. (dot dot) in the `task` parameter of the index.php file. **Recommendations** For MyBlog (com myblog) component version 3.0.329, consider restricting access to the index.php file until a patch is available. As a temporary workaround, avoid using the `task` parameter in the index.php file to minimize the risk of exploitation.