-
TYPO3-EXT-SA-2017-019: Multiple vulnerabilities in extension "JobControl" (dmmjobcontrol)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "JobControl" (dmmjobcontrol) is susceptible to SQL Injection and Cross Site-Scripting.
-
TYPO3-EXT-SA-2017-018: Multiple vulnerabilities in extension "DRC News Comment" (news_comment)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "DRC News Comment" (news_comment) is susceptible to Arbitrary Code Execution and Cross Site-Scripting.
-
TYPO3-EXT-SA-2017-017: Authentication Bypass in extension "Frontend User Registration" (sf_register)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Frontend User Registration" (sf_register) is vulnerable to Authentication Bypass.
-
TYPO3-EXT-SA-2017-016: SQL Injection in extension "Download Center" (pits_downloadcenter)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Download Center" (pits_downloadcenter) is susceptible to SQL Injection.
-
TYPO3-EXT-SA-2017-015: Cross Site-Scripting in extension "Smallads" (ke_smallads)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Smallads" (ke_smallads) is susceptible to Cross-Site Scripting.
-
TYPO3-EXT-SA-2017-014: Cross Site-Scripting in extension "Multishop" (multishop)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Multishop" (multishop) is susceptible to Cross-Site Scripting.
-
TYPO3-EXT-SA-2017-013: Cross Site-Scripting in extension "CAB FAL search" (falsearch)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "CAB FAL search" (falsearch) is susceptible to Cross-Site Scripting.
-
TYPO3-EXT-SA-2017-012: Arbitrary File Disclosure in extension "restler" (restler)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "restler" (restler) is susceptible to Arbitrary File Disclosure.
-
TYPO3-EXT-SA-2017-011: Cross Site-Scripting in extension "Formhandler" (formhandler)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Formhandler" (formhandler) is susceptible to Cross-Site Scripting.
-
TYPO3-EXT-SA-2017-010: Cross Site-Scripting in extension "Recommend page " (pb_recommend_page)
Advisory type: TYPO3 ExtensionsRead moreIt has been discovered that the extension "Recommend page " (pb_recommend_page) is susceptible to Cross-Site Scripting.