Описание
The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| typo3-src | fixed | 4.5.6+dfsg1-1 | package | |
| typo3-src | fixed | 4.3.9+dfsg1-1+squeeze2 | squeeze | package |
| typo3-src | fixed | 4.2.5-1+lenny9 | lenny | package |
EPSS
Процентиль: 64%
0.00472
Низкий
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 6 лет назад
The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.
CVSS3: 9.8
nvd
около 6 лет назад
The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.
github
почти 4 года назад
The TYPO3 Core wec_discussion extension before 2.1.1 is vulnerable to SQL Injection due to improper sanitation of user-supplied input.
EPSS
Процентиль: 64%
0.00472
Низкий