CVE-2005-4875: TYPO3 Reveals Sensitive Information via Direct Request to `misc/phpcheck/`
(updated )
TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, which invokes the phpinfo function and prints values of unspecified environment variables.
References
Code Behaviors & Features
Detect and mitigate CVE-2005-4875 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →