Back to search
CVE-2013-1842
Published: Mar 20, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
SQL injection vulnerability in the Extbase Framework in TYPO3 4.5.x before 4.5.24, 4.6.x before 4.6.17, 4.7.x before 4.7.9, and 6.0.x before 6.0.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to "the Query Object Model and relation values."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20130311 Re: CVE Request: typo3 sql injection and open redirection
mailing-list
x_refsource_MLIST
DSA-2646
vendor-advisory
x_refsource_DEBIAN
90925
vdb-entry
x_refsource_OSVDB
openSUSE-SU-2013:0510
vendor-advisory
x_refsource_SUSE
52638
third-party-advisory
x_refsource_SECUNIA
58330
vdb-entry
x_refsource_BID
52433
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now