CVE-2010-2334 | Yamamah 1.00 Themes download.php Download path traversal (EDB-13856 / SA40150)
A vulnerability marked as problematic has been reported in Yamamah 1.00. Impacted is an unknown function of the file themes/default/download.php of the component Themes. The manipulation of the argument Download leads to path traversal.
This vulnerability is traded as CVE-2010-2334. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is suggested to upgrade the affected component.