First published: Tue Apr 07 2009(Updated: )
Directory traversal vulnerability in the wt_gallery extension 2.5.0 and earlier for TYPO3 allows remote attackers to read arbitrary image files and determine directory structure via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TYPO3 | ||
TYPO3 wt gallery | <=2.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-6630 is considered to be medium, as it allows unauthorized access to sensitive files.
To fix CVE-2008-6630, upgrade the wt_gallery extension to a version later than 2.5.0.
CVE-2008-6630 allows attackers to read arbitrary image files and determine the directory structure on a TYPO3 server.
CVE-2008-6630 affects versions of the wt_gallery extension up to and including 2.5.0 for TYPO3.
CVE-2008-6630 is an unauthenticated vulnerability, allowing remote attackers to exploit it without needing user credentials.