GHSA-rmqc-wfjm-3f66
Dashboard / Vulnerabilities / GHSA-rmqc-wfjm-3f66
Summary: TYPO3 Directory Traversal vulnerability
Details: Directory traversal vulnerability in the TypoScript setup in TYPO3 4.2.x before 4.2.16, 4.3.x before 4.3.9, and 4.4.x before 4.4.5 allows remote authenticated administrators to read arbitrary files via unspecified vectors related to the "file inclusion functionality."
References: https://nvd.nist.gov/vuln/detail/CVE-2010-5101, https://exchange.xforce.ibmcloud.com/vulnerabilities/64180, https://github.com/TYPO3/typo3, https://web.archive.org/web/20120123102224/http://www.securityfocus.com/bid/45470, https://web.archive.org/web/20121103085228/http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-sa-2010-022, http://www.openwall.com/lists/oss-security/2011/01/13/2, http://www.openwall.com/lists/oss-security/2012/05/10/7, http://www.openwall.com/lists/oss-security/2012/05/11/3, http://www.openwall.com/lists/oss-security/2012/05/12/5
Affected packages
Package
Name: typo3/cms
Purl: pkg:composer/typo3/cms
Affected ranges
Type: ECOSYSTEM
Events:
