Описание
TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote attackers to retrieve ExtDirect endpoint services.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| typo3-src | fixed | 4.5.4+dfsg1-1 | package |
EPSS
Процентиль: 48%
0.00249
Низкий
Связанные уязвимости
CVSS3: 6.5
ubuntu
больше 6 лет назад
TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote attackers to retrieve ExtDirect endpoint services.
CVSS3: 6.5
nvd
больше 6 лет назад
TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote attackers to retrieve ExtDirect endpoint services.
EPSS
Процентиль: 48%
0.00249
Низкий