#VU32865 Improper access control in TYPO3 - CVE-2016-5091
Published: July 28, 2020 / Updated: November 18, 2020
TYPO3
TYPO3
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions in Extbase request handling. A remote attacker can send a specially crafted request, bypass implemented security restrictions and execute arbitrary Extbase actions.