CVE-2008-3028
Typo3 Send A Card < 2.2.2 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Send-A-Card (sr_sendcard) extension 2.2.2 and earlier for TYPO3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References (5)
Scores
EPSS
0.0033
EPSS Percentile
55.5%
Classification
CWE
CWE-79
Status
draft
Affected Products (3)
typo3/send_a_card
< 2.2.2
typo3/send_a_card
typo3/send_a_card
Timeline
Published
Jul 07, 2008
Tracked Since
Feb 18, 2026