Description
|
|
(#Several vulnerabilities were reported in third-party components of TYPO3:#- Media management: path traversal. An attacker logged as a backend user with access to the media backend module could exploit it by setting a specially crafted path in order to gain access to files on the host##- Formhandler : cross-site scripting. A remote attacker could exploit it by enticing their victim into following a specially formed link in order to execute arbitrary JavaScript or HTML code##These vulnerabilities are due to improper of user input sanitization.)
|