Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-7073

Опубликовано: 23 дек. 2013
Источник: debian

Описание

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
typo3-srcfixed4.5.32+dfsg1-1package

Примечания

  • https://review.typo3.org/#/c/26180/

Связанные уязвимости

ubuntu
больше 12 лет назад

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

nvd
больше 12 лет назад

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

CVSS3: 6.5
github
больше 4 лет назад

TYPO3 vulnerable to Information Disclosure via Content Editing Wizards component

suse-cvrf
почти 10 лет назад

Security update for typo3-cms-4_5

suse-cvrf
около 10 лет назад

Security update for typo3-cms-4_7