CVE-2020-11063

CVE-2020-11063

In TYPO3 CMS versions 10.4.0 and 10.4.1, it has been discovered that time-based attacks can be used with the password reset functionality for backend users. This allows an attacker to mount user enumeration based on email addresses assigned to backend user accounts. This has been fixed in 10.4.2.

Source: CVE-2020-11063

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다