TYPO3 Internal Form Engine Email Header Injection Vulnerability
BID:22668
Info
TYPO3 Internal Form Engine Email Header Injection Vulnerability
| Bugtraq ID: | 22668 |
| Class: | Input Validation Error |
| CVE: |
CVE-2007-1081 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 22 2007 12:00AM |
| Updated: | May 07 2015 06:02PM |
| Credit: | Olivier Dobberkau, Andreas Otto, and Thorsten Kahler discovered this issue. |
| Vulnerable: |
Typo3 Typo3 4.0.4 Typo3 Typo3 4.0.3 Typo3 Typo3 4.0.2 Typo3 Typo3 4.0.1 Typo3 Typo3 3.7 .0 Typo3 Typo3 3.6.2 Typo3 Typo3 3.5 b5 Typo3 Typo3 3.5 .0 Typo3 Typo3 4.0 Typo3 Typo3 3.8 |
| Not Vulnerable: |
Typo3 Typo3 4.0.5 Typo3 Typo3 4.1beta Typo3 Typo3 4.1 RC1 |
Discussion
TYPO3 Internal Form Engine Email Header Injection Vulnerability
TYPO3 is prone to an email-header-injection vulnerability because it fails to properly sanitize user-supplied input when constructing email messages.
Exploiting this issue allows a malicious user to create arbitrary email headers, and then create and transmit spam messages from the affected computer.
TYPO3 is prone to an email-header-injection vulnerability because it fails to properly sanitize user-supplied input when constructing email messages.
Exploiting this issue allows a malicious user to create arbitrary email headers, and then create and transmit spam messages from the affected computer.
Exploit / POC
TYPO3 Internal Form Engine Email Header Injection Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
TYPO3 Internal Form Engine Email Header Injection Vulnerability
Solution:
The vendor has released version 4.0.5 to address this issue. Please see the vendor references for more information.
Typo3 Typo3 3.8
Typo3 Typo3 4.0
Typo3 Typo3 3.5 b5
Typo3 Typo3 3.5 .0
Typo3 Typo3 3.6.2
Typo3 Typo3 3.7 .0
Typo3 Typo3 4.0.1
Typo3 Typo3 4.0.2
Typo3 Typo3 4.0.3
Typo3 Typo3 4.0.4
Solution:
The vendor has released version 4.0.5 to address this issue. Please see the vendor references for more information.
Typo3 Typo3 3.8
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 4.0
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 3.5 b5
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 3.5 .0
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 3.6.2
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 3.7 .0
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 4.0.1
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 4.0.2
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 4.0.3
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
Typo3 Typo3 4.0.4
-
Typo3 dummy-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/dummy-4.0.5.tar.gz -
Typo3 typo3_src-4.0.5.tar.gz
http://prdownloads.sourceforge.net/typo3/typo3_src-4.0.5.tar.gz
References
TYPO3 Internal Form Engine Email Header Injection Vulnerability
References:
References:
- TYPO3 Core - - Change Log (TYPO3)
- TYPO3 Security Bulletin TYPO3-20070221-1: Email header injection (TYPO3)
- TYPO3 Web Site (TYPO3)