CVE-2014-3944
03.06.2014, 14:55
The Authentication component in TYPO3 6.2.0 before 6.2.3 does not properly invalidate timed out user sessions, which allows remote attackers to bypass authentication via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
typo3 | typo3 | 6.2 |
typo3 | typo3 | 6.2.0:beta1 |
typo3 | typo3 | 6.2.0:beta2 |
typo3 | typo3 | 6.2.0:beta3 |
typo3 | typo3 | 6.2.1 |
typo3 | typo3 | 6.2.2 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References