TYPO3 Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2010-5102
Directory traversal vulnerability in mod/tools/em/class.em_unzip.php in the unzip library in TYPO3 4.2.x before 4.2.16 4.3.x before 4.3.9 and 4.4.x before 4.4.5 allows remote attackers to write arbitrary files via unspecified vectors.