Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-2717
Description:TYPO3 4.0.x before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4.2.1, uses an insufficiently restrictive default fileDenyPattern for Apache, which allows remote attackers to bypass security restrictions and upload configuration files such as .htaccess, or conduct file upload attacks using multiple extensions.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-2717
BugTraq ID: 29657
http://www.securityfocus.com/bid/29657
Bugtraq: 20080611 TYPO3 Security Bulletin TYPO3-20080611-1: Multiple vulnerabilities in TYPO3 Core (Google Search)
http://www.securityfocus.com/archive/1/493270/100/0/threaded
Debian Security Information: DSA-1596 (Google Search)
http://www.debian.org/security/2008/dsa-1596
http://secunia.com/advisories/30619
http://secunia.com/advisories/30660
http://securityreason.com/securityalert/3945
http://www.vupen.com/english/advisories/2008/1802
XForce ISS Database: typo3-filename-file-upload(42988)
https://exchange.xforce.ibmcloud.com/vulnerabilities/42988




© 1998-2025 E-Soft Inc. All rights reserved.