PT-2019-12917 · Typo3 · Typo3

Robin Peraglie

·

Published

2019-07-09

·

Updated

2023-03-01

·

CVE-2019-12747

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TYPO3 versions 8.x through 8.7.26 TYPO3 versions 9.x through 9.5.7
Description The issue allows Deserialization of Untrusted Data.
Recommendations For versions 8.x through 8.7.26, update to a version outside of this range to resolve the issue. For versions 9.x through 9.5.7, update to a version outside of this range to resolve the issue.

Exploit

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2019-12747
GHSA-86HP-XRHJ-FHPQ

Affected Products

Typo3