Description
Craft CMS before 2.6.2976 does not properly restrict viewing the contents of files in the craft/app/ folder.
Remediation
References
Related Vulnerabilities
Apache HTTP Server CVE-2013-2249 Vulnerability (CVE-2013-2249)
Oracle Application Server Other Vulnerability (CVE-2001-1372)
WordPress Plugin Booking.com Banner Creator Unspecified Vulnerability (1.4.5)
MySQL CVE-2013-3808 Vulnerability (CVE-2013-3808)
WordPress Plugin WP REST API (WP API) Cross-Site Request Forgery (1.1)