Advisory Database
  • Advisories
  • Dependency Scanning
  1. composer
  2. ›
  3. typo3/cms-core
  4. ›
  5. GHSA-x4rj-f7m6-42c3

GHSA-x4rj-f7m6-42c3: TYPO3 CMS Authentication Bypass vulnerability

May 30, 2024

It has been discovered that TYPO3’s Salted Password system extension (which is a mandatory system component) is vulnerable to Authentication Bypass when using hashing methods which are related by PHP class inheritance. In standard TYPO3 core distributions stored passwords using the blowfish hashing algorithm can be overridden when using MD5 as the default hashing algorithm by just knowing a valid username. Per default the Portable PHP hashing algorithm (PHPass) is used which is not vulnerable.

References

  • github.com/FriendsOfPHP/security-advisories/blob/master/typo3/cms-core/2018-07-12-1.yaml
  • github.com/TYPO3-CMS/core
  • github.com/advisories/GHSA-x4rj-f7m6-42c3
  • typo3.org/security/advisory/typo3-core-sa-2018-001

Code Behaviors & Features

Detect and mitigate GHSA-x4rj-f7m6-42c3 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions starting from 7.0.0 before 7.6.30, all versions starting from 8.0.0 before 8.7.17, all versions starting from 9.0.0 before 9.3.2

Fixed versions

  • 8.7.17
  • 9.3.2
  • 7.6.30

Solution

Upgrade to versions 7.6.30, 8.7.17, 9.3.2 or above.

Impact 7.5 HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Learn more about CVSS

Weakness

  • CWE-287: Improper Authentication

Source file

packagist/typo3/cms-core/GHSA-x4rj-f7m6-42c3.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Tue, 13 May 2025 12:15:51 +0000.