Skip to content

CVE-2012-6146

The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0018 (0.2%)
Percentil: 38.6%
EPSS: 2026-05-06

Afecta

typo3:typo3

Descripción técnica

The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL.

Publicada: 20/5/2014, 14:55:04
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo