TYPO3 Improper Authentication Vulnerability - CVE-2015-2047 - Vulnerability Database

TYPO3 Improper Authentication Vulnerability - CVE-2015-2047

Low
Reference: CVE-2015-2047
Title: TYPO3 Improper Authentication Vulnerability
Overview:

The rsaauth extension in TYPO3 4.3.0 through 4.3.14 4.4.0 through 4.4.15 4.5.0 through 4.5.39 and 4.6.0 through 4.6.18 when configured for the frontend allows remote attackers to bypass authentication via a password that is casted to an empty value.