Description
Unspecified vulnerability in the Extension Manager in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 allows remote authenticated administrators to read and possibly modify arbitrary files via a crafted parameter, a different vulnerability than CVE-2010-3714.
Remediation
References
Related Vulnerabilities
XWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-32729)
WordPress Plugin YouSayToo auto-publishing 'submit' Parameter Cross-Site Scripting (1.0.1)
MySQL CVE-2018-3282 Vulnerability (CVE-2018-3282)
WordPress 3.5 Multiple Vulnerabilities (1.5 - 3.5)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-7859)