CVE List

Id CVE No. Status Description Phase Votes Comments Actions
32834  CVE-2008-2717  Candidate  TYPO3 4.0.x before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4.2.1, uses an insufficiently restrictive default fileDenyPattern for Apache, which allows remote attackers bypass security restrictions and upload configuration files such as .htaccess, or conduct file upload attacks using multiple extensions.  Assigned (20080616)  None (candidate not yet proposed)    View
71237  CVE-2014-3941  Candidate  TYPO3 4.5.0 before 4.5.34, 4.7.0 before 4.7.19, 6.0.0 before 6.0.14, 6.1.0 before 6.1.9, and 6.2.0 before 6.2.3 allows remote attackers to have unspecified impact via a crafted HTTP Host header, related to "Host Spoofing."  Assigned (20140603)  None (candidate not yet proposed)    View
103190  CVE-2017-6370  Candidate  TYPO3 7.6.15 sends an http request to an index.php?loginProvider URI in cases with an https Referer, which allows remote attackers to obtain sensitive cleartext information by sniffing the network and reading the userident and username fields.  Assigned (20170228)  None (candidate not yet proposed)    View
80098  CVE-2015-2821  Candidate  TYPO3 Neos 1.1.x before 1.1.3 and 1.2.x before 1.2.3 allows remote editors to access, create, and modify content nodes in the workspace of other editors via unspecified vectors.  Assigned (20150401)  None (candidate not yet proposed)    View
3960  CVE-2001-1156  Candidate  TYPSoft FTP 0.95 allows remote attackers to cause a denial of service (CPU consumption) via a "../../*" argument to (1) STOR or (2) RETR.  Proposed (20020315)  ACCEPT(6) Armstrong, Baker, Cole, Frech, Green, Ziese | NOOP(2) Foat, Wall  Frech> http://membres.lycos.fr/typsoft/eng/history.html currently | shows as 404. | New page is | http://www.typsoft.com/history.php?prog=ftp&PHPSESSID=3c2ef43838699c79 | efab517f60af5349  View

Page 18597 of 20943, showing 5 records out of 104715 total, starting on record 92981, ending on 92985

Actions