Vulnerabilities > CVE-2012-1605 - Remote Security vulnerability in TYPO3 Core TYPO3-CORE-SA-2012-001
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
The Extbase Framework in TYPO3 4.6.x through 4.6.6, 4.7, and 6.0 unserializes untrusted data, which allows remote attackers to unserialize arbitrary objects and possibly execute arbitrary code via vectors related to "a missing signature (HMAC) for a request argument."
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 10 |