Skip to main navigation Skip to main content Skip to page footer

Authentication Bypass in TYPO3 CMS 4.5

19 February 2015 ยท TYPO3 Security Team
Dear TYPO3 users!

It has been discovered that TYPO3 CMS 4.5 is susceptible to Authentication Bypass.

For details on the issue please read the accordant advisory:

TYPO3-CORE-SA-2015-001: Authentication Bypass in TYPO3 CMS 4.5
http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2015-001/


Updating or patching your installations to fix this CRITICAL vulnerability is STRONGLY ADVISED!


In general the TYPO3 Security Team recommends to read the following pages:

The TYPO3 Security Guide:
http://docs.typo3.org/typo3cms/SecurityGuide/

Make sure you are subscribed to the TYPO3 Announce List:
http://lists.typo3.org/cgi-bin/mailman/listinfo/typo3-announce

See all TYPO3 security advisories:
http://typo3.org/teams/security/security-bulletins/



Regards,

Helmut Hummel
Member of the TYPO3 Security Team

--
TYPO3 Security Team homepage: http://typo3.org/teams/security/

E-Mail: security@typo3.org