CVE-2011-4901: Infoleak
Published Nov 6, 2019
·Updated
TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to extract arbitrary information from the TYPO3 database.
Affected Software
7 affected componentsFixes available
composer/typo3/cms>=4.5.0<4.5.4
4.5.4
composer/typo3/cms>=4.4.0<4.4.9
4.4.9
composer/typo3/cms<4.3.12
4.3.12
debian/typo3-src
Typo3 TYPO3>=4.5.0<4.5.4
Typo3 TYPO3>=4.3.0<4.3.12
Typo3 TYPO3>=4.4.0<4.4.9
Event History
Nov 6, 2019
CVE Published
via MITRE·04:49 PM
Data Sourced
via MITRE·04:49 PM
DescriptionWeakness
Apr 22, 2022
Advisory Published
via GitHub·12:24 AM
Frequently Asked Questions
1
What is CVE-2011-4901?
CVE-2011-4901 is a vulnerability in TYPO3 that allows remote attackers to extract arbitrary information from the TYPO3 database.
2
What is the severity of CVE-2011-4901?
The severity of CVE-2011-4901 is medium with a CVSS score of 6.5.
3
Which versions of TYPO3 are affected by CVE-2011-4901?
TYPO3 versions before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 are affected by CVE-2011-4901.
4
How can an attacker exploit CVE-2011-4901?
An attacker can exploit CVE-2011-4901 to remotely extract arbitrary information from the TYPO3 database.
5
Where can I find more information about CVE-2011-4901?
For more information about CVE-2011-4901, you can refer to the TYPO3 security advisory TYPO3-CORE-SA-2011-001 and the Debian security tracker.