joomla-cbe Community Builder Enhanced (CBE) (com_cbe) component for Joomla! 1.4.10

CPE Details

joomla-cbe Community Builder Enhanced (CBE) (com_cbe) component for Joomla! 1.4.10
1.4.10
2012-11-27
15h26 +00:00
2012-12-18
20h25 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:joomla-cbe:com_cbe:1.4.10:*:*:*:*:*:*:*

Informations

Vendor

joomla-cbe

Product

com_cbe

Version

1.4.10

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2010-5280 2012-11-26 22h00 +00:00 Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tabname parameter in a userProfile action to index.php. NOTE: this can be leveraged to execute arbitrary code by using the file upload feature.
7.5