[Typo3-dev] Vulnerabilities in PHP <= 4.3.9 and <= 5.0.2

Patrick Gaumond patrick.gaumond at fsa.ulaval.ca
Fri Dec 17 18:41:59 CET 2004


The Hardened-PHP Project has announced several serious and according to 
them, easy-to-exploit vulnerabilities within PHP. A flaw within the 
function unserialize() is rated as very critical for millions of PHP 
servers, because it is exposed to remote attackers through lots of very 
popular webapplications. The list includes forum software like phpBB2, 
WBB2, Invision Board and vBulletin."

REF: http://www.hardened-php.net/advisories/012004.txt

Is TYPO3 a "backdoor" for such vulnerabilities ?




More information about the TYPO3-dev mailing list