TYPO3 before 4.5.4 allows Information Disclosure in the backend.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://security-tracker.debian.org/tracker/CVE-2011-4900 | third party advisory |
https://typo3.org/security/advisory/typo3-core-sa-2011-001/#Information_Disclosure | vendor advisory |