Description
The file indexer does not normalize the configured directory path. A backend user with permission to edit indexer configurations can index documents from arbitrary locations on the server file system through path traversal sequences.
CVSS breakdown
CVSS 4.0
Attack Vector
Network
Attack Complexity
Low
Attack Requirements
Present
Privileges Required
High
User Interaction
None
Confidentiality (Vulnerable System)
High
Integrity (Vulnerable System)
None
Availability (Vulnerable System)
None
Confidentiality (Subsequent System)
Low
Integrity (Subsequent System)
None
Availability (Subsequent System)
None
Affected products
- TYPO3 / Extension "Faceted Search"7.0.0 – 7.0.1
- TYPO3 / Extension "Faceted Search"6.0.0 – 6.6.1
- TYPO3 / Extension "Faceted Search"5.0.0 – 5.6.2
- TYPO3 / Extension "Faceted Search"0 – 4.6.7