![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2022-36104 |
Description: | TYPO3 is an open source PHP based web content management system released under the GNU GPL. In affected versions requesting invalid or non-existing resources via HTTP triggers the page error handler which again could retrieve content to be shown as an error message from another page. This leads to a scenario in which the application is calling itself recursively - amplifying the impact of the initial attack until the limits of the web server are exceeded. Users are advised to update to TYPO3 version 11.5.16 to resolve this issue. There are no known workarounds for this issue. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.124162 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2022-36104 https://github.com/TYPO3/typo3/security/advisories/GHSA-fffr-7x4x-f98q https://github.com/TYPO3/typo3/commit/179dd7cd78947081d573fee2050e197faa556f13 https://github.com/TYPO3/typo3/commit/179dd7cd78947081d573fee2050e197faa556f13 https://typo3.org/security/advisory/typo3-core-sa-2022-006 https://typo3.org/security/advisory/typo3-core-sa-2022-006 |