Authorization bypass through user-controlled key in TYPO3 - #VU18904

 

Authorization bypass through user-controlled key in TYPO3 - #VU18904

Published: June 25, 2019


Vulnerability identifier: #VU18904
CSH Severity: Low
CVSS v4: 1 [CVSS:4.0/AV:P/AC:L/AT:P/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID:
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to gain access to another user's session.

The vulnerability exists due to the application does not delete the session identifier after user logs out and stores it in cookies. An attacker with access to victim's browser can obtain session identifier and gain access to victim's account.


Affected software

TYPO3

Remediation

Install updates from vendor's website.

TYPO3 - addressed in versions 8.7.27, 9.5.8

External References

Related Security Bulletins