CVE-2014-3944
TYPO3 6.2.0-6.2.3 - Auth Bypass
Title source: llmDescription
The Authentication component in TYPO3 6.2.0 before 6.2.3 does not properly invalidate timed out user sessions, which allows remote attackers to bypass authentication via unspecified vectors.
Scores
EPSS
0.0019
EPSS Percentile
40.3%
Classification
CWE
CWE-287
Status
draft
Affected Products (7)
typo3/typo3
typo3/typo3
typo3/typo3
typo3/typo3
typo3/typo3
typo3/typo3
typo3/cms
< 6.2.3Packagist
Timeline
Published
Jun 03, 2014
Tracked Since
Feb 18, 2026