标题:Joomlart JA Voice目录遍历漏洞
(CVE-2010-1982) Description:Joomla!是一款开放源码的内容管理系统(CMS)。 Joomla!的JA Voice (com_javoice)组件存在目录遍历漏洞,远程攻击者可通过index.php的view参数的".."符读取任意文件。
Description
A directory traversal vulnerability in the JA Voice (com_javoice) component 2.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php.