BugTraq
IRM 015: File system path disclosure on TYPO3 Web Content Manager Jan 19 2006 10:30AM
Advisories (advisories irmplc com) (1 replies)
Re: IRM 015: File system path disclosure on TYPO3 Web Content Manager Jan 19 2006 07:13PM
Michael Shigorin (mike osdn org ua)
On Thu, Jan 19, 2006 at 10:30:36AM -0000, Advisories wrote:
> File system path disclosure on TYPO3 Web Content Manager
> Vulnerablity Type / Importance: Information Leakage / Medium

Hm, since when path disclosure is "medium importance"?

> The following files were found to disclose the application path:
> http://hostname/typo3/t3lib/thumbs.php
> http://hostname/tslib/showpic.php
> http://hostname/t3lib/stddb/tables.php
> Tested Versions:
> Version 3.7.1

The first one verified as applicable to 3.8.1 too (easily
avoidable by adding IP- or user-based access restriction
to /typo3 since that's administrative backend anyways),
and the rest doesn't disclose anything on properly configured
at least display_errors-wise webserver, which is a documented
recommended (and often reiterated everywhere) PHP setup.

> Workarounds:
> IRM are not aware of any workarounds for this issue.

Ouch. :)

--
---- WBR, Michael Shigorin <mike (at) altlinux (dot) ru [email concealed]>
------ Linux.Kiev http://www.linux.kiev.ua/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFDz+TWbsPDprYMm3IRAsTzAJ95EE3jI3vFMZfSxaeMngvXvONOjQCdEj11
M8aMdL19h8fLI3+7F4NNNXM=
=WJmd
-----END PGP SIGNATURE-----

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus