CVE-2012-1085: Medium severity Typo3 beuserswitch vulnerability
Published Feb 14, 2012
·Updated
Unspecified vulnerability in the BE User Switch (beuserswitch) extension 0.0.1 for TYPO3 allows remote attackers to obtain sensitive information via unknown vectors.
Affected Software
2 affected components
Typo3 beuserswitch=0.0.1
Typo3 TYPO3
Event History
Feb 14, 2012
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-1085?
CVE-2012-1085 has not been assigned a specific severity rating, but it impacts sensitive information disclosure.
2
How do I fix CVE-2012-1085?
To fix CVE-2012-1085, you should upgrade the BE User Switch extension to a version that resolves the vulnerability.
3
What software is affected by CVE-2012-1085?
CVE-2012-1085 affects the BE User Switch extension version 0.0.1 for TYPO3.
4
Can CVE-2012-1085 be exploited remotely?
Yes, CVE-2012-1085 allows remote attackers to exploit the vulnerability to obtain sensitive information.
5
Is there any workaround for CVE-2012-1085?
There are no documented workarounds for CVE-2012-1085; upgrading to a secure version is recommended.