TYPO3是瑞士TYPO3协会的一套免费开源的内容管理系统(框架)(CMS/CMF)。 TYPO3 Core存在代码注入漏洞,攻击者利用该漏洞可以通过 Form Framework 使用 TYPO3 Core 的漏洞来运行代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-23501 | 5.9 MEDIUM | TYPO3 vulnerable to Improper Authentication in Frontend Login |
| CVE-2022-23500 | 5.9 MEDIUM | TYPO3 subject to Uncontrolled Recursion resulting in Denial of Service |
| CVE-2022-23504 | 5.7 MEDIUM | TYPO3 contains Sensitive Information Disclosure via YAML Placeholder Expressions in Site C |
| CVE-2022-23502 | 5.4 MEDIUM | TYPO3 contains Insufficient Session Expiration after Password Reset |
No comments yet