Total vulnerabilities in the database
TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote attackers to retrieve ExtDirect endpoint services.
Software | From | Fixed in |
---|---|---|
typo3 / typo3 | 4.5.0 | 4.5.4 |
typo3 / typo3 | 4.4.0 | 4.4.9 |