CVE Details
Basic Information
| Title |
CVE-2025-47937 |
| Type |
cve |
| Published |
2025-05-20T14:15:50 |
| Last Seen |
2025-05-20T14:26:26 |
CVSS Information
| Base Score |
3.7 (LOW) |
| Attack Vector |
NETWORK |
| Attack Complexity |
HIGH |
| Privileges Required |
NONE |
| User Interaction |
NONE |
| Scope |
UNCHANGED |
| Confidentiality Impact |
LOW |
| Integrity Impact |
NONE |
| Availability Impact |
NONE |
AI Analysis
| AI Description |
TYPO3, a widely used PHP-based web content management system, has a vulnerability (CVE-2025-47937) that allows unauthorized access to sensitive data. The issue affects versions 9.0.0 up to 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, and 13.4.12 LTS. The vulnerability is due to improper access controls in database queries, potentially exposing confidential information. |
| AI Severity |
Low |
| Vendor |
TYPO3 Association |
| Product |
TYPO3 CMS |
| Affected Version |
9.0.0 to 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, 13.4.12 LTS |
Additional Information
| CVE List |
CVE-2025-47937 |
| CWE List |
CWE-863 |
| Bulletin Family |
cve |
Description
TYPO3 is an open source, PHP based web content management system. Starting in version 9.0.0 and prior to versions 9.5.51 ELTS, 10.4.50 ELTS, 11.5.44 ELTS, 12.4.31 LTS, and 13.4.12 LTS, when performing a database query involving…
CVSS Score Summary
Base Score: %!f(string=#) (LOW)
View Full CVE Details