TYPO3 CMS
cpe:2.3:a:typo3:typo3:*:*:*:*:*:*:*
- >= 11.0.0, <= 11.5.47
- >= 12.0.0, <= 12.4.36
- >= 13.0.0, <= 13.4.17
A denial-of-service vulnerability has been identified in the Bookmark Toolbar of TYPO3 CMS. This issue affects versions 11.0.0 through 11.5.47, 12.0.0 through 12.4.36, and 13.0.0 through 13.4.17. The vulnerability arises from an uncaught exception that allows administrator-level backend users to disrupt the backend user interface by saving manipulated data in the bookmark toolbar. This action triggers a general error state, blocking further access to the interface.
Exploitation of this vulnerability leads to a denial-of-service condition in the backend user interface, causing a general error state that blocks further access to the interface.
Users can update to TYPO3 versions 11.5.48 ELTS, 12.4.37 LTS, or 13.4.18 LTS, which address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.