← Back

CVE-2015-0269

nvd nist
Published: May 26, 2017Modified: May 13, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspecified vectors.

Affected (6)

Products: Contao: Contao Cms
1 product
Contao Cms
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.2.18
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
Contao
Version 3.4.0
Version 3.4.0 beta1
Version 3.4.1
Version 3.4.2
Version 3.4.3

References (6)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.