CVE-2024-45604: Directory traversal in the file selector widget in contao/core-bundle
Impact
Back end users can list files outside their file mounts or the document root in the FileSelector widget.
Patches
Update to Contao 4.13.49.
Workarounds
None.
References
https://contao.org/en/security-advisories/directory-traversal-in-the-fileselector-widget
For more information
If you have any questions or comments about this advisory, open an issue in contao/contao.
Credits
Thanks to Jakob Steeg from usd AG for reporting this vulnerability.
Other sources
Contao is an Open Source CMS. In affected versions authenticated users in the back end can list files outside the document root in the file selector widget. Users are advised to update to Contao 4.13.49. There are no known workarounds for this vulnerability.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45604?
CVE-2024-45604 is considered a critical vulnerability due to its potential for unauthorized file access.
How do I fix CVE-2024-45604?
To fix CVE-2024-45604, update to Contao version 4.13.49 or later.
What is affected by CVE-2024-45604?
CVE-2024-45604 affects all Contao versions prior to 4.13.49.
Can I use a workaround for CVE-2024-45604?
There are currently no known workarounds for CVE-2024-45604.
What type of vulnerability is CVE-2024-45604?
CVE-2024-45604 is a directory traversal vulnerability allowing unauthorized file listing.