Typo3

Typo3

214 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.37%
  • Veröffentlicht 20.07.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:07:29

TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, and 11.0.0 through 11.3.0 have a cross-site scripting vulnerability. When settings for _backend layouts_ are not properly encoded,...

  • EPSS 0.33%
  • Veröffentlicht 20.07.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 06:07:42

TYPO3 is an open source PHP based web content management system. In versions 9.0.0 through 9.5.27, 10.0.0 through 10.4.17, and 11.0.0 through 11.3.0, user credentials may been logged as plain-text. This occurs when explicitly using log level debug, w...

  • EPSS 0.36%
  • Veröffentlicht 20.07.2021 15:15:10
  • Zuletzt bearbeitet 21.11.2024 06:07:29

TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, and 11.0.0 through 11.3.0 have a cross-site scripting vulnerability. When error messages are not properly encoded, the components ...

  • EPSS 0.42%
  • Veröffentlicht 20.07.2021 15:15:09
  • Zuletzt bearbeitet 21.11.2024 06:07:29

TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, and 11.0.0 through 11.3.0 have a cross-site scripting vulnerability. When _Page TSconfig_ settings are not properly encoded, corre...

Exploit
  • EPSS 0.34%
  • Veröffentlicht 27.04.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 05:48:12

Bootstrap Package is a theme for TYPO3. It has been discovered that rendering content in the website frontend is vulnerable to cross-site scripting. A valid backend user account is needed to exploit this vulnerability. Users of the extension, who hav...

  • EPSS 0.25%
  • Veröffentlicht 23.03.2021 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:48:03

TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 6.2.57, 7.6.51, 8.7.40, 9.5.25, 10.4.14, 11.1.1 it has been discovered that Login Handling is susceptible to open redirection which allows attackers redirecting...

  • EPSS 0.13%
  • Veröffentlicht 23.03.2021 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:48:03

TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 6.2.57, 7.6.51, 8.7.40, 9.5.25, 10.4.14, 11.1.1 user session identifiers were stored in cleartext - without processing of additional cryptographic hashing algor...

  • EPSS 0.38%
  • Veröffentlicht 23.03.2021 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:48:03

TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 10.4.14, 11.1.1 it has been discovered that database fields used as _descriptionColumn_ are vulnerable to cross-site scripting when their content gets previewed...

  • EPSS 0.42%
  • Veröffentlicht 23.03.2021 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:48:11

TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 8.7.40, 9.5.25, 10.4.14, 11.1.1, due to the lack of ensuring file extensions belong to configured allowed mime-types, attackers can upload arbitrary data with a...

  • EPSS 1.12%
  • Veröffentlicht 23.03.2021 02:15:12
  • Zuletzt bearbeitet 21.11.2024 05:48:11

TYPO3 is an open source PHP based web content management system. In TYPO3 before versions 8.7.40, 9.5.25, 10.4.14, 11.1.1 due to improper input validation, attackers can by-pass restrictions of predefined options and submit arbitrary data in the Form...