Typo3 · Typo3 · CVE-2005-4875
Name of the Vulnerable Software and Affected Versions:
TYPO3 versions 3.8.0 and earlier
Description:
The issue allows remote attackers to obtain sensitive information by making a direct request to "misc/phpcheck/", which invokes the phpinfo function and prints values of unspecified environment variables.
Recommendations:
For versions 3.8.0 and earlier, consider restricting access to the "misc/phpcheck/" endpoint to minimize the risk of exploitation.