CVE-2008-2490
Typo3 KJ Imagelightbox2 < 1.4.2 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the KJ Image Lightbox 2 (aka kj_imagelightbox2) extension 1.4.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified "user input."
References (4)
Scores
EPSS
0.0029
EPSS Percentile
51.6%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
typo3/kj_imagelightbox2
< 1.4.2
Timeline
Published
May 28, 2008
Tracked Since
Feb 18, 2026