CVE Vulnerabilities

CVE-2010-0286

Published: Feb 22, 2010 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Unspecified vulnerability in the OpenID Identity Authentication extension in TYPO3 4.3.0 allows remote attackers to bypass authentication and gain access to a backend user account via unknown attack vectors in which both the attacker and victim have an OpenID provider that discards identities during authentication.

Affected Software

Name Vendor Start Version End Version
Typo3 Typo3 4.3.0 (including) 4.3.0 (including)
Typo3-src Ubuntu dapper *
Typo3-src Ubuntu hardy *
Typo3-src Ubuntu intrepid *
Typo3-src Ubuntu jaunty *
Typo3-src Ubuntu karmic *
Typo3-src Ubuntu lucid *
Typo3-src Ubuntu maverick *
Typo3-src Ubuntu natty *
Typo3-src Ubuntu oneiric *
Typo3-src Ubuntu precise *
Typo3-src Ubuntu quantal *
Typo3-src Ubuntu raring *
Typo3-src Ubuntu saucy *
Typo3-src Ubuntu upstream *
Typo3-src Ubuntu utopic *
Typo3-src Ubuntu vivid *

References