Directory traversal vulnerability in the TypoScript setup in TYPO3 4.2.x before 4.2.16, 4.3.x before 4.3.9, and 4.4.x before 4.4.5 allows remote authenticated administrators to read arbitrary files via unspecified vectors related to the "file inclusion functionality."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-05-21 13:55
Updated : 2017-08-28 18:29
NVD link : CVE-2010-5101
Mitre link : CVE-2010-5101
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
typo3
- typo3