Description
SilverStripe through 4.3.3 has incorrect access control for protected files uploaded via Upload::loadIntoFile(). An attacker may be able to guess a filename in silverstripe/assets via the AssetControlExtension.
Remediation
References
Related Vulnerabilities
Moodle Improper Handling of Insufficient Permissions or Privileges Vulnerability (CVE-2025-67848)
Django Improper Input Validation Vulnerability (CVE-2011-4136)
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1581)
WordPress Plugin Featured Comments Cross-Site Request Forgery (1.2.1)