Impact
The flaw arises from insecure path handling in the ReReplacer Pro XML include feature. An attacker can supply crafted include paths that resolve to files outside the intended site directory, enabling reading of arbitrary files such as configuration files or credentials. The underlying weakness corresponds to CWE‑22, a path traversal issue. The impact is primarily confidentiality breach—exposing sensitive content but it does not provide execution or modification privileges directly.
Affected Systems
The ReReplacer Pro extension for Joomla, supplied by regularlabs.com. No specific version range is listed, so any deployed instance that has the XML include feature enabled is potentially affected.
Risk and Exploitability
The CVSS score of 7.5 indicates moderate‑to‑high severity. The EPSS score is reported as below 1 %, indicating a very low probability of exploitation in the wild. The vulnerability is not catalogued in the CISA KEV list, suggesting no known large‑scale active exploitation. Based on the description, it is inferred that the likely attack vector is a remote attacker sending a specially crafted request to the extension’s XML include handler; the attacker does not need local access or elevated privileges to trigger the traversal.
OpenCVE Enrichment