Vulnerability Description
TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, the `ShowImageController` (`_eID tx_cms_showpic_`) lacks a cryptographic HMAC-signature on the `frame` HTTP query parameter (e.g. `/index.php?eID=tx_cms_showpic?file=3&...&frame=12345`). This allows adversaries to instruct the system to produce an arbitrary number of thumbnail images on the server side. TYPO3 versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, 13.1.1 fix the problem described.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Typo3 | Typo3 | >= 9.0.0, < 9.5.48 |
Related Weaknesses (CWE)
References
- https://github.com/TYPO3/typo3/commit/05c95fed869a1a6dcca06c7077b83b6ea866ff14Patch
- https://github.com/TYPO3/typo3/commit/1e70ebf736935413b0531004839362b4fb0755a5Patch
- https://github.com/TYPO3/typo3/commit/df7909b6a1cf0f12a42994d0cc3376b607746142Patch
- https://github.com/TYPO3/typo3/security/advisories/GHSA-36g8-62qv-5957MitigationVendor Advisory
- https://typo3.org/security/advisory/typo3-core-sa-2024-010MitigationVendor Advisory
- https://github.com/TYPO3/typo3/commit/05c95fed869a1a6dcca06c7077b83b6ea866ff14Patch
- https://github.com/TYPO3/typo3/commit/1e70ebf736935413b0531004839362b4fb0755a5Patch
- https://github.com/TYPO3/typo3/commit/df7909b6a1cf0f12a42994d0cc3376b607746142Patch
- https://github.com/TYPO3/typo3/security/advisories/GHSA-36g8-62qv-5957MitigationVendor Advisory
- https://typo3.org/security/advisory/typo3-core-sa-2024-010MitigationVendor Advisory
FAQ
What is CVE-2024-34358?
CVE-2024-34358 is a vulnerability with a CVSS score of 5.3 (MEDIUM). TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, the `ShowImageController` (`_eID tx_c...
How severe is CVE-2024-34358?
CVE-2024-34358 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-34358?
Check the references section above for vendor advisories and patch information. Affected products include: Typo3 Typo3.