Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-6146

Опубликовано: 20 мая 2014
Источник: debian
EPSS Низкий

Описание

The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
typo3-srcfixed4.5.19+dfsg1-4package

Примечания

  • https://review.typo3.org/16304

EPSS

Процентиль: 59%
0.00991
Низкий

Связанные уязвимости

nvd
около 12 лет назад

The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL.

github
около 4 лет назад

Typo3 Backend History Module Vulnerable to XSS

EPSS

Процентиль: 59%
0.00991
Низкий