#VU46244 Information disclosure in Localization Manager - CVE-2020-25025
Published: September 3, 2020
Localization Manager
TYPO3
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a missing access check. A remote authenticated attacker can view and export data of translatable fields which are outside of the users access scope and gain unauthorized access to sensitive information on the system.