Joomla Event Booking Extension is prone to an arbitrary file-download vulnerability.
An attacker can exploit this issue to download arbitrary files within the context of the web server process. Information obtained may aid in further attacks.
Event Booking Extension version 3.8.3 and prior are vulnerable.
Information
Exploit
Attackers can exploit this issue using browser or readily available tools.