CVE-2013-7073: TYPO3

Medium severity, CVSS 4.0. EPSS: 1.3% chance of exploitation in the next 30 days.

The Content Editing Wizards component in TYPO3 4.5.0 through 4.5.31, 4.7.0 through 4.7.16, 6.0.0 through 6.0.11, and 6.1.0 through 6.1.6 does not check permissions, which allows remote authenticated editors to read arbitrary TYPO3 table columns via unspecified parameters.

Affected products

  • TYPO3 TYPO3: version 4.5.0 only; version 4.5.1 only; version 4.5.2 only; version 4.5.3 only; version 4.5.4 only; version 4.5.5 only; …

Published 2013-12-23. Last modified 2026-06-17.