Back to search
CVE-2014-6289
Published: Oct 3, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
The Ajax dispatcher for Extbase in the Yet Another Gallery (yag) extension before 3.0.1 and Tools for Extbase development (pt_extbase) extension before 1.5.1 allows remote attackers to bypass access restrictions and execute arbitrary controller actions via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://typo3.org/extensions/repository/view/yag
x_refsource_CONFIRM
http://typo3.org/extensions/repository/view/pt_extbase
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now