view_help.php in the backend help system in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to unserialize arbitrary objects and possibly execute arbitrary PHP code via an unspecified parameter, related to a "missing signature (HMAC)."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2012-09-05T23:00:00
Updated: 2024-08-06T20:05:12.679Z
Reserved: 2012-06-14T00:00:00
Link: CVE-2012-3527
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-09-05T23:55:01.880
Modified: 2024-11-21T01:41:03.913
Link: CVE-2012-3527
Redhat
No data.