TYPO3 8.x before 8.7.25 and 9.x before 9.5.6 allows remote code execution because it does not properly configure the applications used for image processing, as demonstrated by ImageMagick or GraphicsMagick.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-05-09T04:09:11

Updated: 2024-08-04T23:03:32.786Z

Reserved: 2019-05-09T00:00:00

Link: CVE-2019-11832

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-05-09T05:29:01.957

Modified: 2019-05-13T17:29:03.020

Link: CVE-2019-11832

cve-icon Redhat

No data.