PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2010-1723 Scanner

CVE-2010-1723 scanner - Directory Traversal vulnerability in iNetLanka Contact Us Draw Root Map component for Joomla!

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.1k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2010-1723
6.8
CVSS

Directory traversal vulnerability in the iNetLanka Contact Us Draw Root Map (com_drawroot) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

The iNetLanka Contact Us Draw Root Map component for Joomla! is designed to provide website administrators with an easy way to create and display a visual representation of the website's directory structure. It is typically used on Joomla! websites that have a large number of pages or complex directory structures. The component's functionality allows users to draw and display the website's directory structure as a tree or graph, which can help improve site navigation and information architecture.

One of the vulnerabilities detected in this product is CVE-2010-1723. This vulnerability is a directory traversal vulnerability that allows remote attackers to read arbitrary files on the server. The vulnerability is caused by the component's failure to properly validate user input when processing requests for files and directories. An attacker can exploit this vulnerability by injecting a ".." sequence into the controller parameter to reach files that are not intended to be accessible to them.

When this vulnerability is exploited, it can lead to serious consequences for website owners and their users. An attacker can use the vulnerability to gain sensitive information, such as user passwords or data stored in configuration files. They could also upload malicious scripts and execute commands remotely, effectively compromising the entire website. This could lead to loss of data, financial damage, and reputational harm.

Thanks to the pro features of the s4e.io platform, those who read this article can easily and quickly learn about vulnerabilities in their digital assets. By using the platform's comprehensive scan and analysis tools, website owners can identify vulnerabilities and take appropriate measures to address them. The platform also offers advanced reporting and insights, making it easier to stay on top of emerging threats and protect against future attacks. Don't wait until it's too late – sign up for s4e.io today and keep your digital assets safe and secure.

 

REFERENCES

Solution Advice

To protect against this vulnerability, website administrators can take the following precautions:

  • Update the iNetLanka Contact Us Draw Root Map component to the latest version, which includes a fix for the vulnerability.
  • Configure the web server to deny access to sensitive files and directories.
  • Limit access to the component to trusted users only.
  • Use a web application firewall to detect and block attempts to exploit this vulnerability.
  • Regularly scan the website for vulnerabilities and apply patches as soon as they become available.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2010-1723 scanner - Directory Traversal vulnerability in iNetLanka Contact Us Draw Root Map component for Joomla! | S4E