Improper input validation in TYPO3 - #VU16758
Published: December 28, 2018
TYPO3
Detailed vulnerability description
The vulnerability exists in Online Media Asset Handling (*.youtube and *.vimeo files) in the TYPO3 backend due to Install Tool exposes the current TYPO3 version number A remote authenticated attacker can put large files with according file extensions, trigger high consumption of system resources, exceed limits of the current PHP process which results in a dysfunctional backend component.