Описание
TYPO3 Improper Access Control vulnerability
The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote authenticated editors to generate arbitrary HMAC signatures and bypass intended access restrictions via unspecified vectors.
Пакеты
typo3/cms-core
>= 4.5.0, < 4.5.31
4.5.31
typo3/cms-core
>= 4.7.0, < 4.7.16
4.7.16
typo3/cms-core
>= 6.0.0, < 6.0.11
6.0.11
typo3/cms-core
>= 6.1.0, < 6.1.6
6.1.6
Связанные уязвимости
The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote authenticated editors to generate arbitrary HMAC signatures and bypass intended access restrictions via unspecified vectors.
The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote authenticated editors to generate arbitrary HMAC signatures and bypass intended access restrictions via unspecified vectors.
The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31 ...