TYPO3是瑞士TYPO3协会维护的一套免费开源的内容管理系统(框架)(CMS/CMF)。frontend rendering是其中的一个前端渲染组件。 TYPO3的frontend rendering组件中存在安全漏洞。当程序将config.prefixLocalAnchors设置为‘all’或‘cached’时,远程攻击者可通过实施Cache Poisoning攻击利用该漏洞使页面重载,导致页面不能正确跳转。以下版本受到影响:TYPO3 4.5.39之前4.5.x版本,4.6.x版本至6.2.9之前6
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2013-2131 | Python RRDtool模块格式化字符串漏洞 | |
| CVE-2014-9276 | MediaWiki 跨站请求伪造漏洞 | |
| CVE-2014-9277 | MediaWiki 代码注入漏洞 | |
| CVE-2014-9506 | MantisBT 信息泄露漏洞 | |
| CVE-2014-9507 | MediaWiki 跨站脚本漏洞 | |
| CVE-2014-9508 | TYPO3 frontend rendering组件后置链接漏洞 |
No comments yet