<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel>
        <title>Official TYPO3 news</title>
        <description>Posts by date: 2007 / 7</description>
        <language>en</language>
        <link>https://news.typo3.com/article/archive/2007/july/blog.archive.xml</link>
        <lastBuildDate>Tue, 28 Jul 2026 14:37:58 +0200</lastBuildDate>
        
    
    
        
<item><title>T3N Magazine releases five current TYPO3 Articles</title><link>https://news.typo3.com/article/t3n-magazine-releases-five-current-typo3-articles</link><comments>https://news.typo3.com/article/t3n-magazine-releases-five-current-typo3-articles#comments</comments><pubDate>Fri, 20 Jul 2007 13:56:00 +0200</pubDate><dc:creator>Thomas Hempel</dc:creator><guid>https://news.typo3.com/article/t3n-magazine-releases-five-current-typo3-articles</guid><description>It is time again for a bunch of T3N articles - seven pages from the current issue (No. 8) have been translated for your reading pleasure.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-20070719-1-REMOTE-SHELL-COMMAND-EXECUTION-IN-EXTENSIONS-EMBEDDING-PHPMAILER: TYPO3 Security Bulletin 20070719-1: Remote shell command execution in extensions embedding PHPMailer</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070719-1-remote-shell-command-execution-in-extensions-embedding-phpmailer</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070719-1-remote-shell-command-execution-in-extensions-embedding-phpmailer#comments</comments><pubDate>Thu, 19 Jul 2007 16:30:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070719-1-remote-shell-command-execution-in-extensions-embedding-phpmailer</guid><description>Multiple TYPO3 extensions is affected by the third party tool PHPMailer, which is vulnerable to a remote shell command execution.</description></item>


    
        
<item><title>TYPO3-20070719-1: Remote shell command execution in extensions embedding PHPMailer</title><link>https://news.typo3.com/security/advisory/typo3-20070719-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070719-1#comments</comments><pubDate>Thu, 19 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070719-1</guid><description>Multiple TYPO3 extensions is affected by the third party tool PHPMailer, which is vulnerable to a remote shell command execution.</description></item>


    
        
<item><title>TYPO3 4.1.2 and 4.0.7</title><link>https://news.typo3.com/article/typo3-412-and-407</link><comments>https://news.typo3.com/article/typo3-412-and-407#comments</comments><pubDate>Tue, 17 Jul 2007 16:12:00 +0200</pubDate><dc:creator>Michael Stucki</dc:creator><guid>https://news.typo3.com/article/typo3-412-and-407</guid><description>The TYPO3 Core Team announces versions 4.1.2 and 4.0.7 of the TYPO3 Enterprise Content Management System.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-TYPO3-20070716-2-INFORMATION-DISCLOSURE-FROM-EXTENSION-PHPMYADMIN: TYPO3 Security Bulletin TYPO3-20070716-2: Information Disclosure from Extension phpmyadmin</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070716-2-information-disclosure-from-extension-phpmyadmin</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070716-2-information-disclosure-from-extension-phpmyadmin#comments</comments><pubDate>Mon, 16 Jul 2007 23:50:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070716-2-information-disclosure-from-extension-phpmyadmin</guid><description>An information disclosure issue has been found in the phpmyadmin extension of TYPO3 that may give access to phpinfo() information in special cases. The standalone version of phpmyadmin is not affected.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-20070716-1-CROSS-SITE-SCRIPTING-VULNERABILITY-IN-FAQ: TYPO3 Security Bulletin 20070716-1: Cross Site Scripting vulnerability in faq</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070716-1-cross-site-scripting-vulnerability-in-faq</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070716-1-cross-site-scripting-vulnerability-in-faq#comments</comments><pubDate>Mon, 16 Jul 2007 13:17:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-20070716-1-cross-site-scripting-vulnerability-in-faq</guid><description>It has been discovered that the extension faq is susceptible to cross site scripting (XSS) attacks, making it possible to execute arbitrary JavaScript.</description></item>


    
        
<item><title>TYPO3-20070716-2: Information Disclosure from phpmyadmin</title><link>https://news.typo3.com/security/advisory/typo3-20070716-2</link><comments>https://news.typo3.com/security/advisory/typo3-20070716-2#comments</comments><pubDate>Mon, 16 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Ekkehard Gümbel</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070716-2</guid><description>An information disclosure issue has been found in the phpmyadmin extension of TYPO3 that may give access to phpinfo() information in special cases. The standalone version of phpmyadmin is not affected.</description></item>


    
        
<item><title>TYPO3-20070716-1: Cross Site Scripting vulnerability in faq</title><link>https://news.typo3.com/security/advisory/typo3-20070716-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070716-1#comments</comments><pubDate>Mon, 16 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070716-1</guid><description>It has been discovered that the extension faq is susceptible to cross site scripting (XSS) attacks, making it possible to execute arbitrary JavaScript.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-TYPO3-20070712-1-MULTIPLE-VULNERABILITIES-IN-CIVSERV: TYPO3 Security Bulletin TYPO3-20070712-1: Multiple vulnerabilities in civserv</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070712-1-multiple-vulnerabilities-in-civserv</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070712-1-multiple-vulnerabilities-in-civserv#comments</comments><pubDate>Thu, 12 Jul 2007 12:17:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070712-1-multiple-vulnerabilities-in-civserv</guid><description>Multiple vulnerabilities has been found. Incorrect handling of input from GET/POST-variables, and allowing an attacker to execute XSS and/or SQL Injection attacks.</description></item>


    
        
<item><title>TYPO3-20070712-1: Multiple vulnerabilities in civserv</title><link>https://news.typo3.com/security/advisory/typo3-20070712-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070712-1#comments</comments><pubDate>Thu, 12 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070712-1</guid><description>Multiple vulnerabilities has been found in the extension civserv: Incorrect handling of input from GET/POST-variables, and allowing an attacker to execute XSS and/or SQL Injection attacks.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-TYPO3-20070710-1-SQL-INJECTION-IN-FECHANGEPASSWORD: TYPO3 Security Bulletin TYPO3-20070710-1: SQL Injection in fechangepassword</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070710-1-sql-injection-in-fechangepassword</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070710-1-sql-injection-in-fechangepassword#comments</comments><pubDate>Tue, 10 Jul 2007 20:06:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070710-1-sql-injection-in-fechangepassword</guid><description>It has been discovered that the extension fechangepassword is open for a SQL injection when updating the password.</description></item>


    
        
<item><title>TYPO3-20070710-1: SQL Injection in fechangepassword</title><link>https://news.typo3.com/security/advisory/typo3-20070710-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070710-1#comments</comments><pubDate>Tue, 10 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070710-1</guid><description>It has been discovered that the extension fechangepassword is open for a SQL injection when updating the password.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-TYPO3-20070709-1-INCORRECT-AUTHENTICATION-IN-FTPBROWSER: TYPO3 Security Bulletin TYPO3-20070709-1: Incorrect authentication in ftpbrowser</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070709-1-incorrect-authentication-in-ftpbrowser</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070709-1-incorrect-authentication-in-ftpbrowser#comments</comments><pubDate>Mon, 09 Jul 2007 14:22:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070709-1-incorrect-authentication-in-ftpbrowser</guid><description>It has been discovered that the extension ftpbrowser is doing incorrect authentication in some files, making it open for exploiting.</description></item>


    
        
<item><title>TYPO3-20070709-1: Incorrect authentication</title><link>https://news.typo3.com/security/advisory/typo3-20070709-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070709-1#comments</comments><pubDate>Mon, 09 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070709-1</guid><description>It has been discovered that the extension ftpbrowser is doing incorrect authentication in some files, making it open for exploiting.</description></item>


    
        
<item><title>TYPO3-SECURITY-BULLETIN-TYPO3-20070703-1-MULTIPLE-VULNERABILITIES-IN-ALL-VARIANTS-OF-MYSQLDUMPER: TYPO3 Security Bulletin TYPO3-20070703-1: Multiple vulnerabilities in all variants of MySQLDumper</title><link>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070703-1-multiple-vulnerabilities-in-all-variants-of-mysqldumper</link><comments>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070703-1-multiple-vulnerabilities-in-all-variants-of-mysqldumper#comments</comments><pubDate>Tue, 03 Jul 2007 23:35:00 +0200</pubDate><dc:creator>Lars Houmark</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-security-bulletin-typo3-20070703-1-multiple-vulnerabilities-in-all-variants-of-mysqldumper</guid><description>Multiple vulnerabilities have been found in the third party extension &quot;mysqldumper&quot;. Full read/write access to the connected database and other related issues.</description></item>


    
        
<item><title>TYPO3-20070703-1: Multiple vulnerabilities in all variants of MySQLDumper</title><link>https://news.typo3.com/security/advisory/typo3-20070703-1</link><comments>https://news.typo3.com/security/advisory/typo3-20070703-1#comments</comments><pubDate>Tue, 03 Jul 2007 10:00:00 +0200</pubDate><dc:creator>Zoe Legacy</dc:creator><guid>https://news.typo3.com/security/advisory/typo3-20070703-1</guid><description>Multiple vulnerabilities have been found in the third party extension &quot;mysqldumper&quot;. Full read/write access to the connected database and other related issues.</description></item>


    



    </channel>
</rss>
