CVE-2012-1605
Published Sep 4, 2012
Last updated 12 years ago
Overview
- Description
- The Extbase Framework in TYPO3 4.6.x through 4.6.6, 4.7, and 6.0 unserializes untrusted data, which allows remote attackers to unserialize arbitrary objects and possibly execute arbitrary code via vectors related to "a missing signature (HMAC) for a request argument."
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:typo3:typo3:4.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D42D56A-2A1D-4FAA-961D-304E916BEF80" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88CBAAC7-5207-45E8-86D5-18D98259070D" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FAAF258-882A-46AE-B32C-7569A79C1DAC" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFB6F1E7-351D-45E7-9571-2AF4283080DD" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2B3B4A9-BDC7-4426-98FB-398B63AF3D18" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0016A078-1291-4281-BA62-5A846AEE7584" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F11DB8A8-8309-4FC9-BA35-1AFFC5B4AE8A" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.6.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9661D2DB-F24C-478B-B691-303D48D9B158" }, { "criteria": "cpe:2.3:a:typo3:typo3:4.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F1A90BF-E780-4282-BCCB-0E568EB785A2" }, { "criteria": "cpe:2.3:a:typo3:typo3:6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84C095F8-000A-4A8D-81DE-047810345A15" } ], "operator": "OR" } ] } ]