Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
typo3 typo3 4.5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-4614
PHP remote file inclusion vulnerability in Classes/Controller/AbstractController.php in the workspaces system extension in TYPO3 4.5.x before 4.5.9, 4.6.x before 4.6.2, and development versions of 4.7 allows remote attackers to execute arbitrary PHP code via a URL in the...
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5
Typo3 Typo3 4.5.7
Typo3 Typo3 4.6
Typo3 Typo3 4.6.1
1 EDB exploit available
NA
CVE-2012-3530
Incomplete blacklist vulnerability in the t3lib_div::quoteJSvalue API function in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to conduct cross-site scripting (XSS) attacks via certain HTML5 JavaScript events....
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.18
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6
Typo3 Typo3 4.6.4
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7
Typo3 Typo3 4.7.0
NA
CVE-2012-6148
Cross-site scripting (XSS) vulnerability in the function menu API in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated backend users to inject arbitrary web script or HTML via unspecified vectors....
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.15
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.4
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.6.12
Typo3 Typo3 4.6.13
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.0
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.5
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.4
NA
CVE-2012-3531
Cross-site scripting (XSS) vulnerability in the Install Tool in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors....
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.18
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.4
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7
NA
CVE-2012-1607
The Command Line Interface (CLI) script in TYPO3 4.4.0 through 4.4.13, 4.5.0 through 4.5.13, 4.6.0 through 4.6.6, 4.7, and 6.0 allows remote attackers to obtain the database name via a direct request....
Typo3 Typo3 4.4.10
Typo3 Typo3 4.4.12
Typo3 Typo3 4.4.1
Typo3 Typo3 4.4.0
Typo3 Typo3 4.4.7
Typo3 Typo3 4.4.8
Typo3 Typo3 4.4
Typo3 Typo3 4.4.2
Typo3 Typo3 4.4.4
Typo3 Typo3 4.4.9
Typo3 Typo3 4.4.13
Typo3 Typo3 4.4.11
Typo3 Typo3 4.4.6
Typo3 Typo3 4.4.3
Typo3 Typo3 4.4.5
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.13
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.4
Typo3 Typo3 4.7
Typo3 Typo3 6.0
NA
CVE-2012-3527
view_help.php in the backend help system in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to unserialize arbitrary objects and possibly execute arbitrary PHP code via an unspecified parameter, related to a...
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.14
Typo3 Typo3 4.6.4
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.11
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
NA
CVE-2012-3528
Multiple cross-site scripting (XSS) vulnerabilities in the backend in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allow remote authenticated backend users to inject arbitrary web script or HTML via unspecified vectors....
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.1
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.4
Typo3 Typo3 4.6.3
Typo3 Typo3 4.7
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.2
NA
CVE-2012-3529
The configuration module in the backend in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to obtain the encryption key via unspecified vectors....
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.18
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6
Typo3 Typo3 4.6.4
Typo3 Typo3 4.7
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.1
NA
CVE-2013-1842
SQL injection vulnerability in the Extbase Framework in TYPO3 4.5.x before 4.5.24, 4.6.x before 4.6.17, 4.7.x before 4.7.9, and 6.0.x before 6.0.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to "the Query Object Model and...
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.14
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6
Typo3 Typo3 4.6.4
Typo3 Typo3 4.6.13
Typo3 Typo3 4.6.14
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.15
Typo3 Typo3 4.6.16
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.12
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.6
Typo3 Typo3 4.7.7
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.4
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.5
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7
Typo3 Typo3 4.7.8
Typo3 Typo3 6.0.1
Typo3 Typo3 6.0.2
Typo3 Typo3 6.0
NA
CVE-2012-6146
The Backend History Module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 does not properly restrict access, which allows remote authenticated editors to read the history of arbitrary records via a crafted URL....
Typo3 Typo3 4.6.10
Typo3 Typo3 4.6.12
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6.7
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6.11
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.8
Typo3 Typo3 4.6.0
Typo3 Typo3 4.6.9
Typo3 Typo3 4.6.13
Typo3 Typo3 4.6.2
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.4
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.4
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.6
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site request forgery
CVE-2022-24025
SSRF
CVE-2022-37451
CVE-2022-24022
CVE-2022-1215
brute force
CVE-2022-29582
CVE-2022-36834
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »