Description
The web application is based on Typo3 CMS. Typo3 Admin interface is publicly accessible.
Remediation
Restrict access to Typo3 Admin.
References
Related Vulnerabilities
Drupal Core 6.x Multiple Vulnerabilities (6.0 - 6.12)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5730)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-3723)
Dolibarr Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-14240)
WordPress Plugin Cherry Services List Information Disclosure (1.4.1)