Vulnerabilities (CVE)

Filtered by vendor Contao Subscribe
Filtered by product Contao Cms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-20028 1 Contao 1 Contao Cms 2020-08-24 4.0 MEDIUM 6.5 MEDIUM
Contao 3.x before 3.5.37, 4.4.x before 4.4.31 and 4.6.x before 4.6.11 has Incorrect Access Control.
CVE-2015-0269 1 Contao 1 Contao Cms 2017-06-08 4.0 MEDIUM 4.3 MEDIUM
Directory traversal vulnerability in Contao before 3.2.19, and 3.4.x before 3.4.4 allows remote authenticated "back end" users to view files outside their file mounts or the document root via unspecified vectors.