CVE-2012-3527
Publication date 5 September 2012
Last updated 24 July 2024
Ubuntu priority
Description
view_help.php in the backend help system in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to unserialize arbitrary objects and possibly execute arbitrary PHP code via an unspecified parameter, related to a "missing signature (HMAC)."
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| typo3-src | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |