CVE-2015-0269

Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspecified vectors.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:contao:contao_cms:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:contao:contao_cms:3.4.2:*:*:*:*:*:*:*
cpe:2.3:a:contao:contao_cms:3.4.0:*:*:*:*:*:*:*
cpe:2.3:a:contao:contao_cms:3.4.0:beta1:*:*:*:*:*:*
cpe:2.3:a:contao:contao_cms:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:contao:contao_cms:3.4.3:*:*:*:*:*:*:*

Information

Published : 2017-05-26 10:29

Updated : 2017-06-08 06:38


NVD link : CVE-2015-0269

Mitre link : CVE-2015-0269


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

contao

  • contao_cms