PT-2020-13213 · Typo3 · Typo3 Direct Mail Extension
Kurt Dirnbauer
·
Published
2020-05-13
·
Updated
2021-05-24
·
CVE-2020-12699
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
TYPO3 direct mail extension versions through 5.2.3
Description
The issue concerns an Open Redirect via the jumpUrl.
Recommendations
For versions through 5.2.3, update to a version that contains a fix for this issue.
Fix
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Typo3 Direct Mail Extension