typo3

346 tracked vulnerabilities.

CVE-2009-0255 HIGH
TYPO3 4.0.0-4.0.9 4.1.0-4.1.7 4.2.0-4.2.3 - Use of Insufficiently Random Values in System Extension Install Tool
Jan 22, 2009
CVSS 7.5
EPSS 0.05
CVE-2008-6699
TYPO3 tjs_reslib < 0.1.0 - Cross-Site Scripting
Apr 10, 2009
EPSS 0.00
CVE-2008-6690
TYPO3 nd_antispam <1.0.3 - Remote Configuration Modification
Apr 10, 2009
EPSS 0.01
CVE-2008-6630
wt_gallery < 2.5.0 - Path Traversal
Apr 07, 2009
EPSS 0.00
CVE-2008-6595
pmk_rssnewsexport_extension - SQL Injection
Apr 03, 2009
EPSS 0.00
CVE-2008-6459
TYPO3 auto BE User Registration < 0.0.2 - SQL Injection
Mar 13, 2009
EPSS 0.00
CVE-2008-6344
TYPO3 TU-Clausthal Staff < 0.3.0 - SQL Injection
Feb 27, 2009
EPSS 0.00
CVE-2008-6343
TU-Clausthal ODIN Extension 0.0.1-0.2.0 - Cross-Site Scripting
Feb 27, 2009
EPSS 0.00
CVE-2008-6341
SB Universal Plugin < 2.0.1 - Cross-Site Scripting
Feb 27, 2009
EPSS 0.00
CVE-2008-6145
WEC Discussion Forum < 1.7.0 - SQL Injection
Feb 16, 2009
EPSS 0.00
CVE-2008-6144
WEC Discussion Forum < 1.7.0 - Cross-Site Scripting
Feb 16, 2009
EPSS 0.00
CVE-2008-5995
freeCap CAPTCHA Extension < 1.0.4 - Cross-Site Scripting
Jan 28, 2009
EPSS 0.00
CVE-2008-5801
TYPO3 Dictionary Extension < 0.1.9 - Remote Code Execution
Dec 31, 2008
EPSS 0.01
CVE-2008-5800
TYPO3 fsmi_people <0.0.24 - SQL Injection
Dec 31, 2008
EPSS 0.00
CVE-2008-5799
Wir ber uns Extension < 0.0.24 - Cross-Site Scripting
Dec 31, 2008
EPSS 0.00
CVE-2008-5798
TYPO3 cms_poll <0.1.1 - SQL Injection
Dec 31, 2008
EPSS 0.00
CVE-2008-5797
advCalendar Extension < 0.3.1 - SQL Injection
Dec 31, 2008
EPSS 0.00
CVE-2008-5796
TYPO3 eluna Page Comments <1.1.2 - SQL Injection
Dec 31, 2008
EPSS 0.00
CVE-2008-5795
TYPO3 eluna Page Comments <1.1.2 - XSS
Dec 31, 2008
EPSS 0.00
CVE-2008-5656
TYPO3 felogin 4.2.0-4.2.2 - Cross-Site Scripting
Dec 17, 2008
EPSS 0.00
CVE-2008-5644
TYPO3 4.2.2 - Cross-Site Scripting in File Backend Module
Dec 17, 2008
EPSS 0.00
CVE-2008-5609
Commerce extension <0.9.6 - SQL Injection
Dec 17, 2008
EPSS 0.00
CVE-2008-5096
TYPO3 File List Extension < 0.2.1 - Exposure of Sensitive Information
Nov 14, 2008
EPSS 0.00
CVE-2008-5087
TYPO3 Another Backend Login < 0.0.4 - SQL Injection
Nov 14, 2008
EPSS 0.00
CVE-2008-4661
Page Improvements < 1.1.0 - Cross-Site Scripting
Oct 22, 2008
EPSS 0.00