vendor:
Seyret
by:
_mlk_
5.5
CVSS
MEDIUM
Local File Inclusion
CWE
Product Name: Seyret
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Linux, BSD, Windows
2010
Joomla Component Seyret (com_seyret)
This exploit allows an attacker to include local files in the Seyret component of Joomla. It was discovered by _mlk_ and is applicable to versions of Seyret on Linux, BSD, and Windows.
Mitigation:
To mitigate this vulnerability, the vendor should create a function that scans and reads the inclusion of paths and chars ().