Описание
Luracast Restler directory traversal vulnerability
Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used in the restler extension before 1.7.1 for TYPO3, allows remote attackers to read arbitrary files via the file parameter.
Пакеты
Наименование
aoe/restler
composer
Затронутые версииВерсия исправления
< 1.7.1
1.7.1
Наименование
luracast/restler
composer
Затронутые версииВерсия исправления
< 3.1.0
3.1.0
Связанные уязвимости
CVSS3: 7.5
nvd
больше 8 лет назад
Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used in the restler extension before 1.7.1 for TYPO3, allows remote attackers to read arbitrary files via the file parameter.