Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-7080

Опубликовано: 23 дек. 2013
Источник: debian

Описание

The creating record functionality in Extension table administration library (feuser_adminLib.inc) in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, and 6.0.0 through 6.0.11 allows remote attackers to write to arbitrary fields in the configuration database table via crafted links, aka "Mass Assignment."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
typo3-srcfixed4.5.32+dfsg1-1package

Примечания

  • https://review.typo3.org/#/c/26178/

Связанные уязвимости

ubuntu
около 12 лет назад

The creating record functionality in Extension table administration library (feuser_adminLib.inc) in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, and 6.0.0 through 6.0.11 allows remote attackers to write to arbitrary fields in the configuration database table via crafted links, aka "Mass Assignment."

nvd
около 12 лет назад

The creating record functionality in Extension table administration library (feuser_adminLib.inc) in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, and 6.0.0 through 6.0.11 allows remote attackers to write to arbitrary fields in the configuration database table via crafted links, aka "Mass Assignment."

github
больше 3 лет назад

TYPO3 is vulnerable to Mass Assignment in the Extension table administration library