Description
The web application is based on Typo3 CMS. Typo3 Admin interface is publicly accessible.
Remediation
Restrict access to Typo3 Admin.
References
Related Vulnerabilities
Magento Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-28566)
Composer installed.json publicly accessible
WordPress Plugin Email newsletter 'option' Parameter Information Disclosure (8.0)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-2353)