Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-7073

Опубликовано: 23 дек. 2013
Источник: debian

Описание

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
typo3-srcfixed4.5.32+dfsg1-1package

Примечания

  • https://review.typo3.org/#/c/26180/

Связанные уязвимости

ubuntu
около 12 лет назад

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

nvd
около 12 лет назад

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

CVSS3: 6.5
github
больше 3 лет назад

TYPO3 vulnerable to Information Disclosure via Content Editing Wizards component

suse-cvrf
больше 9 лет назад

Security update for typo3-cms-4_5

suse-cvrf
больше 9 лет назад

Security update for typo3-cms-4_7