CVE-2014-3944

EPSS 0.19%

TYPO3 Improper Session Invalidation

發布日:2022/5/17修改日:2024/12/8

描述

The Authentication component in TYPO3 6.2.0 before 6.2.3 does not properly invalidate timed out user sessions, which allows remote attackers to bypass authentication via unspecified vectors.

受影響套件(1)

參考連結(7)