typo3

346 tracked vulnerabilities.

CVE-2010-5099
TYPO3 <4.2.16, 4.3.9, 4.4.5 - Path Traversal
May 30, 2012
EPSS 0.05
CVE-2010-5104
TYPO3 <4.2.16-4.4.5 - Info Disclosure
May 21, 2012
EPSS 0.01
CVE-2010-5103
TYPO3 <4.2.16-4.4.5 - SQL Injection
May 21, 2012
EPSS 0.01
CVE-2010-5102
TYPO3 <4.2.16-4.4.5 - Path Traversal
May 21, 2012
EPSS 0.01
CVE-2010-5101
TYPO3 <4.2.16-4.4.5 - Path Traversal
May 21, 2012
EPSS 0.00
CVE-2010-5100
TYPO3 4.2.0-4.2.15, 4.3.0-4.3.8, 4.4.0-4.4.4 - Authenticated Cross-Site Scripting in Install Tool
May 21, 2012
EPSS 0.00
CVE-2010-5098
TYPO3 4.2.0-4.2.15, 4.3.0-4.3.8, 4.4.0-4.4.4 - Authenticated Cross-Site Scripting in FORM Content Object
May 21, 2012
EPSS 0.00
CVE-2010-5097
TYPO3 4.3.0-4.3.8 and 4.4.0-4.4.4 - Cross-Site Scripting in Click Enlarge Functionality
May 21, 2012
EPSS 0.01
CVE-2010-4068
TYPO3 4.2.x-4.2.14, 4.3.x-4.3.6, 4.4.x-4.4.3 - Authenticated Arbitrary File Read and Write via Extension Manager
Oct 25, 2010
EPSS 0.00
CVE-2010-3717
TYPO3 4.2.x-4.3.x-4.4.x - Denial of Service via Long Email Address String
Oct 25, 2010
EPSS 0.01
CVE-2010-3716
TYPO3 4.2.x-4.3.x - Authenticated Privilege Escalation via be_user_creation Task
Oct 25, 2010
EPSS 0.00
CVE-2010-3715
TYPO3 4.2.0-4.2.14, 4.3.0-4.3.6, 4.4.0-4.4.3 - Cross-Site Scripting via RemoveXSS Function and Backend
Oct 25, 2010
EPSS 0.00
CVE-2010-3714
TYPO3 4.2.0-4.2.14, 4.3.0-4.3.6, 4.4.0-4.4.3 - Unauthenticated Arbitrary File Read via jumpUrl Hash Comparison
Oct 25, 2010
EPSS 0.34
CVE-2010-1153
TYPO3 4.3.0-4.3.2 - Remote Code Execution via Autoloader ClassName Variable
Apr 20, 2010
EPSS 0.01
CVE-2010-1022
t3sec_saltedpw < 0.2.13 - Authentication Bypass
Mar 19, 2010
EPSS 0.00
CVE-2010-1006
TYPO3 Brainstorming <0.1.8 - SQL Injection
Mar 19, 2010
EPSS 0.00
CVE-2010-0286
TYPO3 4.3.0 - Authentication Bypass via OpenID Identity Discard
Feb 22, 2010
EPSS 0.00
CVE-2010-0347
Typo3 VD Gemomap < 0.3.1 - XSS
Jan 15, 2010
EPSS 0.00
CVE-2010-0346
mimi_tipfriends < 0.0.2 - Cross-Site Scripting
Jan 15, 2010
EPSS 0.00
CVE-2010-0345
Majordomo < 1.1.3 - Cross-Site Scripting
Jan 15, 2010
EPSS 0.00
CVE-2010-0344
zak_store_management < 1.0.0 - SQL Injection
Jan 15, 2010
EPSS 0.00
CVE-2010-0343
pb_clanlist 0.0.1 - SQL Injection
Jan 15, 2010
EPSS 0.00
CVE-2010-0342
TYPO3 job_reports < 0.1.0 - SQL Injection
Jan 15, 2010
EPSS 0.00
CVE-2010-0341
Typo3 BB Simplejobs < 0.1.0 - SQL Injection
Jan 15, 2010
EPSS 0.00
CVE-2010-0340
Typo3 Mjseventpro < 0.2.1 - SQL Injection
Jan 15, 2010
EPSS 0.00