CVE: CVE-2012-3527

Export to Word

view_help.php in the backend help system in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to unserialize arbitrary objects and possibly execute arbitrary PHP code via an unspecified parameter, related to a "missing signature (HMAC)."

Threat-Mapped Scoring

Score: 0.0

Priority: Unclassified

EPSS

Score: 0.02065
Percentile: 0.83153

CVSS Scoring

CVSS v2 Score: 4.6

Severity:

Mapped CWE(s)

All CAPEC(s)

CAPEC(s) with Mapped TTPs

Mapped ATT&CK TTPs

Affected Products

← Back to Home