First published: Thu Jul 22 2010(Updated: )
Directory traversal vulnerability in the Directory Listing (dir_listing) extension 1.1.0 and earlier for TYPO3 allows remote attackers to have an unspecified impact via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
serge gebhardt Dir Listing | <=1.1.0 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4952 is classified as a moderate severity vulnerability due to potential unauthorized directory access.
To fix CVE-2009-4952, update the Directory Listing extension to a version later than 1.1.0.
CVE-2009-4952 allows remote attackers to exploit directory traversal paths, potentially exposing sensitive information.
TYPO3 itself is not inherently vulnerable; the issue is specific to the Directory Listing extension version 1.1.0 and earlier.
Versions of the Directory Listing extension up to and including 1.1.0 are vulnerable to CVE-2009-4952.