PT-2014-7109 · Typo3+1 · Typo3+1

Published

2014-09-11

·

Updated

2017-09-08

·

CVE-2014-6236

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions LumoNet PHP Include (lumophpinclude) extension versions prior to 1.2.1 for TYPO3
Description The issue allows remote attackers to execute arbitrary scripts. This is related to vectors involving extension links.
Recommendations For LumoNet PHP Include (lumophpinclude) extension versions prior to 1.2.1, update to version 1.2.1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2014-6236

Affected Products

Lumonet Php Include
Typo3