First published: Wed Dec 10 2014(Updated: )
Possible link spoofing on the homepage when anchors are used
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/typo3/cms | >=6.2.0<6.2.9>=7.0.0<7.0.2 | |
composer/typo3/cms | >=7.0.0<7.0.2 | 7.0.2 |
composer/typo3/cms | >=4.6.0<6.2.9 | 6.2.9 |
composer/typo3/cms | >=4.5.0<4.5.39 | 4.5.39 |
TYPO3 | =4.5.0 | |
TYPO3 | =4.5.1 | |
TYPO3 | =4.5.2 | |
TYPO3 | =4.5.3 | |
TYPO3 | =4.5.4 | |
TYPO3 | =4.5.5 | |
TYPO3 | =4.5.6 | |
TYPO3 | =4.5.7 | |
TYPO3 | =4.5.8 | |
TYPO3 | =4.5.9 | |
TYPO3 | =4.5.10 | |
TYPO3 | =4.5.11 | |
TYPO3 | =4.5.12 | |
TYPO3 | =4.5.13 | |
TYPO3 | =4.5.14 | |
TYPO3 | =4.5.15 | |
TYPO3 | =4.5.16 | |
TYPO3 | =4.5.17 | |
TYPO3 | =4.5.18 | |
TYPO3 | =4.5.19 | |
TYPO3 | =4.5.20 | |
TYPO3 | =4.5.21 | |
TYPO3 | =4.5.22 | |
TYPO3 | =4.5.23 | |
TYPO3 | =4.5.24 | |
TYPO3 | =4.5.25 | |
TYPO3 | =4.5.26 | |
TYPO3 | =4.5.27 | |
TYPO3 | =4.5.28 | |
TYPO3 | =4.5.29 | |
TYPO3 | =4.5.30 | |
TYPO3 | =4.5.31 | |
TYPO3 | =4.5.32 | |
TYPO3 | =4.5.33 | |
TYPO3 | =4.5.34 | |
TYPO3 | =4.5.35 | |
TYPO3 | =4.5.36 | |
TYPO3 | =4.5.37 | |
TYPO3 | =4.5.38 | |
TYPO3 | =4.6.0 | |
TYPO3 | =4.6.1 | |
TYPO3 | =4.6.2 | |
TYPO3 | =4.6.3 | |
TYPO3 | =4.6.4 | |
TYPO3 | =4.6.5 | |
TYPO3 | =4.6.6 | |
TYPO3 | =4.6.7 | |
TYPO3 | =4.6.8 | |
TYPO3 | =4.6.9 | |
TYPO3 | =4.6.10 | |
TYPO3 | =4.6.11 | |
TYPO3 | =4.6.12 | |
TYPO3 | =4.6.13 | |
TYPO3 | =4.6.14 | |
TYPO3 | =4.6.15 | |
TYPO3 | =4.6.16 | |
TYPO3 | =4.6.17 | |
TYPO3 | =4.6.18 | |
TYPO3 | =4.7.0 | |
TYPO3 | =4.7.1 | |
TYPO3 | =4.7.2 | |
TYPO3 | =4.7.3 | |
TYPO3 | =4.7.4 | |
TYPO3 | =4.7.5 | |
TYPO3 | =4.7.6 | |
TYPO3 | =4.7.7 | |
TYPO3 | =4.7.8 | |
TYPO3 | =4.7.9 | |
TYPO3 | =4.7.10 | |
TYPO3 | =4.7.11 | |
TYPO3 | =4.7.12 | |
TYPO3 | =4.7.13 | |
TYPO3 | =4.7.14 | |
TYPO3 | =4.7.15 | |
TYPO3 | =4.7.16 | |
TYPO3 | =4.7.17 | |
TYPO3 | =4.7.18 | |
TYPO3 | =4.7.19 | |
TYPO3 | =4.7.20 | |
TYPO3 | =6.0 | |
TYPO3 | =6.0.1 | |
TYPO3 | =6.0.2 | |
TYPO3 | =6.0.3 | |
TYPO3 | =6.0.4 | |
TYPO3 | =6.0.5 | |
TYPO3 | =6.0.6 | |
TYPO3 | =6.0.7 | |
TYPO3 | =6.0.8 | |
TYPO3 | =6.0.9 | |
TYPO3 | =6.0.10 | |
TYPO3 | =6.0.11 | |
TYPO3 | =6.0.12 | |
TYPO3 | =6.0.13 | |
TYPO3 | =6.0.14 | |
TYPO3 | =6.1 | |
TYPO3 | =6.1.1 | |
TYPO3 | =6.1.2 | |
TYPO3 | =6.1.3 | |
TYPO3 | =6.1.4 | |
TYPO3 | =6.1.5 | |
TYPO3 | =6.1.6 | |
TYPO3 | =6.1.7 | |
TYPO3 | =6.1.8 | |
TYPO3 | =6.1.9 | |
TYPO3 | =6.2 | |
TYPO3 | =6.2.0-beta1 | |
TYPO3 | =6.2.0-beta2 | |
TYPO3 | =6.2.0-beta3 | |
TYPO3 | =6.2.1 | |
TYPO3 | =6.2.2 | |
TYPO3 | =6.2.3 | |
TYPO3 | =6.2.4 | |
TYPO3 | =6.2.5 | |
TYPO3 | =6.2.6 | |
TYPO3 | =6.2.7 | |
TYPO3 | =6.2.8 | |
TYPO3 | =7.0.0 | |
TYPO3 | =7.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-9508 is classified as a medium severity vulnerability due to its potential for link spoofing on affected TYPO3 versions.
To fix CVE-2014-9508, upgrade your TYPO3 installation to versions 4.5.39, 6.2.9, or 7.0.2 or later.
CVE-2014-9508 affects TYPO3 versions 4.5.x before 4.5.39, 4.6.x through 6.2.x before 6.2.9, and 7.x before 7.0.2.
CVE-2014-9508 can be exploited by remote attackers to manipulate URLs, leading to potential phishing or other malicious activities.
Yes, updating your TYPO3 installation to the patched versions will mitigate the vulnerability associated with CVE-2014-9508.