Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-17968
HistoryNov 13, 2021 - 12:00 a.m.

TYPO3 Licensing Issue Vulnerability (CNVD-2022-17968)

2021-11-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.001 Low

EPSS

Percentile

36.9%

TYPO3 is a free and open source content management system (framework) (CMS/CMF) of the Swiss TYPO3 Association. TYPO3 has a licensing issue vulnerability that stems from a breach of access control in the extension-bound media browser, which could be exploited by an attacker to execute a request to the pixx.io API for a configured API user to download various from the DAM system media files from the DAM system.

CPENameOperatorVersion
TYPO3 Typo3lt1.0.6

0.001 Low

EPSS

Percentile

36.9%

Related for CNVD-2022-17968