Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-0257
Description:Multiple cross-site scripting (XSS) vulnerabilities in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) content of indexed files to the (a) Indexed Search Engine (indexed_search) system extension; (b) unspecified test scripts in the ADOdb system extension; and (c) unspecified vectors in the Workspace module.
Test IDs: 1.3.6.1.4.1.25623.1.0.63361   1.3.6.1.4.1.25623.1.0.63297  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-0257
BugTraq ID: 33376
http://www.securityfocus.com/bid/33376
Debian Security Information: DSA-1711 (Google Search)
http://www.debian.org/security/2009/dsa-1711
http://secunia.com/advisories/33617
http://secunia.com/advisories/33679
XForce ISS Database: typo3-adodb-xss(48137)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48137
XForce ISS Database: typo3-indexedsearchengine-xss(48135)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48135
XForce ISS Database: typo3-library-session-hijacking(48133)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48133
XForce ISS Database: typo3-workspace-xss(48136)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48136




© 1998-2025 E-Soft Inc. All rights reserved.