icon

We found results for “

WS-2018-0064

Good to know:

icon

Date: February 23, 2010

Authentication Bypass vulnerability in TYPO3 4.3.x before 4.3.2. When using system extension "saltedpasswords" under certain circumstances, an attacker doesn't need to know the original clear text password to successfully log in as a frontend user.

Language: PHP

Severity Score

Severity Score

Weakness Type (CWE)

Authentication Bypass Using an Alternate Path or Channel

CWE-288

Top Fix

icon

Upgrade Version

Upgrade to version TYPO3_4-3-2

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): NETWORK
Attack Complexity (AC): LOW
Privileges Required (PR): NONE
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): LOW
Integrity (I): LOW
Availability (A): NONE

Do you need more information?

Contact Us