CVE-2009-0255 Information
Feb 14, 2021
cve
Description
The System extension Install tool in TYPO3 4.0.0 through 4.0.9 4.1.0 through 4.1.7 and 4.2.0 through 4.2.3 creates the encryption key with an insufficiently random seed which makes it easier for attackers to crack the key.
Reference
http://secunia.com/advisories/33617 http://secunia.com/advisories/33679 http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-001/ http://www.debian.org/security/2009/dsa-1711 http://www.securityfocus.com/bid/33376 https://exchange.xforce.ibmcloud.com/vulnerabilities/48132
Share on: