CVE-2013-1843Open Redirect in Cms-core

Severity
6.4MEDIUMNVD
EPSS
0.6%
top 29.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 20
Latest updateMay 17

Description

Open redirect vulnerability in the Access tracking mechanism in TYPO3 4.5.x before 4.5.24, 4.6.x before 4.6.17, 4.7.x before 4.7.9, and 6.0.x before 6.0.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:NExploitability: 10.0 | Impact: 4.9

Affected Packages2 packages

Packagisttypo3/cms-core4.5.04.5.24+3
NVDtypo3/typo354 versions+53

🔴Vulnerability Details

3
GHSA
TYPO3 Open redirect vulnerability in the Access tracking mechanism2022-05-17
OSV
TYPO3 Open redirect vulnerability in the Access tracking mechanism2022-05-17
CVEList
CVE-2013-1843: Open redirect vulnerability in the Access tracking mechanism in TYPO3 42013-03-20

💬Community

1
Bugzilla
CVE-2013-4424 GateIn: XSS due to improper url escaping2013-10-15
CVE-2013-1843 — Open Redirect in Typo3 Cms-core | cvebase