A local file inclusion vulnerability exists in the com_multiroot version 1.0 component for Joomla. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing directory traversal characters to the vulnerable application. This can allow the attacker to include arbitrary local files on the system, which may contain sensitive information.
A Local File Inclusion (LFI) vulnerability exists in the com_matamko version 1.01 component of Joomla. An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable server. This request contains a maliciously crafted parameter which can be used to include arbitrary files from the server. This can be used to gain access to sensitive information such as system files, configuration files, etc.
A Local File Inclusion (LFI) vulnerability exists in the com_gadgetfactory version 1.0.0 component of Joomla. An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable server. This request contains a maliciously crafted parameter which can be used to include arbitrary files from the server. This can be used to gain access to sensitive information such as configuration files, source code, etc.
A local file inclusion vulnerability exists in the Joomla Component ZiMB Manager version 0.1. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing directory traversal characters to the vulnerable application. This can allow the attacker to include arbitrary local files on the web server.
A Local File Inclusion (LFI) vulnerability exists in the com_zimbcomment version 0.8.1 component of Joomla. An attacker can exploit this vulnerability by sending a specially crafted HTTP request to the vulnerable server. This request contains a maliciously crafted parameter which can be used to include arbitrary files from the server. This can be used to gain access to sensitive information such as system files, configuration files, etc.
A Local File Inclusion (LFI) vulnerability exists in Joomla Component Archery Scores (com_archeryscores) v1.0.6. An attacker can exploit this vulnerability to include arbitrary files from the web server and execute arbitrary code. This is achieved by passing a maliciously crafted 'controller' parameter to the vulnerable 'index.php' script.
Multiple files and parameters are vulnerable to SQL Injection, Unprotected Admin Backend, and XSS. Example URIs are provided for each vulnerability.
eclime is a free opensource smarty based shopping cart build on osCommerce 2.2 solid engine, with many useful contributions added. An attacker can bypass authentication and create and download a backup of the database by accessing the URL http://127.0.0.1/eclime/admin/backup.php/login.php?action=backup and http://127.0.0.1/eclime/admin/backup.php/login.php?action=backupnow. The attacker can then download the backup by accessing the URL http://127.0.0.1/eclime/admin/backup.php/login.php?action=download&file=db_comm-20100301222138.sql.
A vulnerability exists in Alegro 1.2.1 which allows an attacker to inject malicious SQL queries into the application. The vulnerability is due to the application not properly sanitizing user-supplied input before using it in an SQL query. An attacker can exploit this vulnerability by sending a specially crafted request to the vulnerable application. This can result in the manipulation of queries to the back-end database, resulting in information disclosure, modification or deletion of data, and other malicious activities.
Openscrutin 1.03 is vulnerable to Remote File Inclusion (RFI) and Local File Inclusion (LFI) attacks. An attacker can exploit this vulnerability by sending a maliciously crafted URL to the vulnerable application. This can allow the attacker to execute arbitrary code on the server, access sensitive files, and gain access to the server. The vulnerability is caused due to insufficient sanitization of user-supplied input in the 'path_om' parameter of the 'droit.class.php', 'collectivite.class.php', 'utilisateur.class.php', 'courrier.class.php', and 'profil.class.php' scripts.