S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2010-0759 Scanner

Detects 'Directory Traversal' vulnerability in Core Design Scriptegrator component for Joomla! affects v. 1.4.1.

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.9k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2010-0759
7.5
CVSS

Directory traversal vulnerability in plugins/system/cdscriptegrator/libraries/highslide/js/jsloader.php in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allows remote attackers to read, and possibly include and execute, arbitrary files via directory traversal sequences in the files[] parameter, a different vector than CVE-2010-0760.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

The Core Design Scriptegrator plugin for Joomla! is a plugin that allows website owners to integrate different elements into their website. This plugin can be used to display images, videos, and other media files in a specific format. It also provides different options for customization, making it a popular choice for website developers. However, like many other plugins, it is not immune to vulnerabilities.

CVE-2010-0759 is a specific vulnerability that affects the Core Design Scriptegrator plugin. This vulnerability allows remote attackers to exploit a directory traversal vulnerability in the plugin's libraries. In other words, attackers can read and possibly include and execute arbitrary files by injecting directory traversal sequences into the plugin's files[] parameter.

When this vulnerability is exploited, it can lead to serious consequences for website owners. For one, attackers can gain access to sensitive information on the website, such as login credentials and user data. They could also install malicious files or scripts onto the website, which could be used to launch further attacks or steal more data. Additionally, these attacks could seriously harm the reputation of the website, causing loss of traffic and revenue.

At s4e.io, we specialize in protecting digital assets from attacks like these. Our platform provides a range of pro features that help website owners stay informed about potential vulnerabilities and take the necessary steps to protect their assets. By signing up with us, website owners can rest assured that their websites are secure and protected against attacks. We encourage all website owners to take security seriously and to take the necessary steps to protect their digital assets.

 

REFERENCES

Solution Advice

To protect against this vulnerability, website owners can take a number of precautions. Here are some options:

  • Update to the latest version of the Core Design Scriptegrator plugin, which may include patches for this issue.
  • Use web application firewalls (WAFs) to block known attack patterns and to filter malicious traffic.
  • Add input validation to the plugin to ensure that it only processes valid data.
  • Restrict access to the files and directories of the website to prevent unauthorized access.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2010-0759 scanner - Directory Traversal vulnerability in Core Design Scriptegrator component for Joomla! | S4E