CVE-2013-5303
critical
CVSS v3
—
CVSS v2
10.0
VIR risk
10.0
Description
Unspecified vulnerability in the Store Locator (locator) extension before 3.1.5 for TYPO3 has unknown impact and remote attack vectors, related to "Insecure Unserialize."
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-013
Vendor advisory: cve@mitre.org — http://typo3.org/extensions/repository/view/locator
Vendor advisory: cve@mitre.org — http://secunia.com/advisories/54350
References
- http://osvdb.org/95967
- http://secunia.com/advisories/54350
- http://typo3.org/extensions/repository/view/locator
- http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-013
- http://www.securityfocus.com/bid/61606
- https://exchange.xforce.ibmcloud.com/vulnerabilities/86233
- http://osvdb.org/95967
- http://secunia.com/advisories/54350
- http://typo3.org/extensions/repository/view/locator
- http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-013
- http://www.securityfocus.com/bid/61606
- https://exchange.xforce.ibmcloud.com/vulnerabilities/86233
Verify integrity in audit chain (admin only). AS-IS.