TYPO3-EXT-SA-2015-006: Arbitrary Code Execution in extension Frontend User Upload (feupload)
It has been discovered that the extension "Frontend User Upload" (feupload) is susceptible to Arbitrary Code Execution
Read moreTYPO3-EXT-SA-2015-008: SQL Injection vulnerability in extension wt_directory (wt_directory)
It has been discovered that the extension "wt_directory" (wt_directory) is susceptible to SQL Injection
TYPO3-EXT-SA-2015-009: SQL Injection vulnerability in extension Store Locator (locator)
It has been discovered that the extension "Store Locator" (locator) is susceptible to SQL Injection
TYPO3-EXT-SA-2015-010: SQL Injection vulnerability in extension Smoelenboek (ncgov_smoelenboek)
It has been discovered that the extension "Smoelenboek" (ncgov_smoelenboek) is susceptible to SQL Injection
TYPO3-EXT-SA-2015-011: SQL Injection vulnerability in extension Developer Log (devlog)
It has been discovered that the extension "Developer Log" (devlog) is susceptible to SQL Injection
TYPO3-EXT-SA-2015-012: SQL Injection vulnerability in extension FAQ - Frequently Asked Questions (js_faq)
It has been discovered that the extension "FAQ - Frequently Asked Questions" (js_faq) is susceptible to SQL Injection
TYPO3-EXT-SA-2015-005: Cross-Site Scripting in extension Gridelements (gridelements)
It has been discovered that the extension "gridelements" (gridelements) is susceptible to Cross-Site Scripting
TYPO3-EXT-SA-2015-004: Information Disclosure in Direct Mail Subscription (direct_mail_subscription)
It has been discovered that the extension "Direct Mail Subscription" (direct_mail_subscription) is susceptible to Information Disclosure.
TYPO3-EXT-SA-2015-003: Multiple vulnerabilities in Content Rating Extbase (content_rating_extbase)
It has been discovered that the extension "Content Rating Extbase" (content_rating_extbase) is susceptible to Cross-Site Scripting and SQL Injection.
TYPO3-EXT-SA-2015-002: Multiple vulnerabilities in Content Rating (content_rating)
It has been discovered that the extension "Content Rating" (content_rating) is susceptible to Cross-Site Scripting and SQL Injection.