Author: [No title]
- Security
TYPO3-20080515-2: Multiple vulnerabilities in extension Frontend Filemanager (air_filemanager)
-
[No title]
It has been discovered that the extension Frontend Filemanager (air_filemanager) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.
Read more- Security
TYPO3-20080513-4: Multiple vulnerabilities in extension Statistics (ke_stats)
-
[No title]
It has been discovered that the extension Statistics (ke_stats) is vulnerable to Blind SQL Injection attacks. Also, a Cross Site Scripting issue has been found.
- Security
TYPO3-20080513-3: Cross Site Scripting vulnerability in extension Event Database (rlmp_eventdb)
-
[No title]
It has been discovered that the extension Event Database (rlmp_eventdb) is susceptible to Cross Site Scripting (XSS) attacks.
- Security
TYPO3-20080513-2: Cross Site Scripting vulnerability in extension Questionaire (pbsurvey)
-
[No title]
It has been discovered that the extension Questionaire (pbsurvey) is susceptible to Cross Site Scripting (XSS) attacks.
- Security
TYPO3-20080513-1: Multiple vulnerabilities in extension WT Gallery (wt_gallery)
-
[No title]
It has been discovered that the extension wt_gallery is susceptible to Path Traversal and Cross Site Scripting (XSS) attacks. Besides that, it may disclose sensitive information.
- Security
TYPO3-20080505-2: Cross Site Scripting vulnerability in extension powermail
-
[No title]
It has been discovered that the extension powermail is susceptible to Cross Site Scripting (XSS) attacks.
- Security
TYPO3-20080505-1: Multiple vulnerabilities in extension MailformPlus (th_mailformplus)
-
[No title]
It has been discovered that the extension MailformPlus (th_mailformplus) is susceptible to Cross Site Scripting (XSS) attacks and allows Remote Code Execution.
- Security
TYPO3-20080416-2: Vulnerabilities in extensions in pmk_rssnewsexport and scm_rdfexport
-
[No title]
It has been discovered that the extensions pmk_rssnewsexport and cm_rdfexport are vulnerable to SQL Injection attacks.
- Security
TYPO3-20080416-1: Multiple vulnerabilities in extension de_phpot
-
[No title]
It has been discovered that the extension de_phpot is vulnerable to multiple SQL Injection flaws and other types of security issues.
- Security
TYPO3-20071210-1: SQL Injection in system extension indexed_search
-
[No title]
It has been discovered that the system extension indexed_search is vulnerable to a SQL Injection flaw.