Lucene search

K
osvGoogleOSV:GHSA-R674-MC9P-HVW5
HistoryMay 17, 2022 - 4:54 a.m.

TYPO3 Improper Access Control vulnerability

2022-05-1704:54:37
Google
osv.dev
7

0.002 Low

EPSS

Percentile

53.1%

The (old) Form Content Element component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 allows remote authenticated editors to generate arbitrary HMAC signatures and bypass intended access restrictions via unspecified vectors.

0.002 Low

EPSS

Percentile

53.1%