Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
typo3 typo3 4.5.7 vulnerabilities and exploits
(subscribe to this query)
685
VMScore
CVE-2011-4614
PHP remote file inclusion vulnerability in Classes/Controller/AbstractController.php in the workspaces system extension in TYPO3 4.5.x prior to 4.5.9, 4.6.x prior to 4.6.2, and development versions of 4.7 allows remote malicious users to execute arbitrary PHP code via a URL in th...
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5
Typo3 Typo3 4.5.7
Typo3 Typo3 4.6
Typo3 Typo3 4.6.1
1 EDB exploit
668
VMScore
CVE-2014-9509
The frontend rendering component in TYPO3 4.5.x prior to 4.5.39, 4.6.x up to and including 6.2.x prior to 6.2.9, and 7.x prior to 7.0.2, when config.prefixLocalAnchors is set to all or cached, allows remote malicious users to have an unspecified impact (possibly resource consumpt...
Typo3 Typo3 7.0.0
Typo3 Typo3 7.0.1
Typo3 Typo3 6.0
Typo3 Typo3 6.0.1
Typo3 Typo3 6.0.9
Typo3 Typo3 6.1
Typo3 Typo3 6.1.1
Typo3 Typo3 6.1.2
Typo3 Typo3 6.2.3
Typo3 Typo3 6.2.4
Typo3 Typo3 6.2.5
Typo3 Typo3 6.2.6
Typo3 Typo3 4.7.19
Typo3 Typo3 4.7.20
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
Typo3 Typo3 4.6.14
Typo3 Typo3 4.6.15
Typo3 Typo3 4.6.16
Typo3 Typo3 4.6.17
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.13
668
VMScore
CVE-2013-1842
SQL injection vulnerability in the Extbase Framework in TYPO3 4.5.x prior to 4.5.24, 4.6.x prior to 4.6.17, 4.7.x prior to 4.7.9, and 6.0.x prior to 6.0.3 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors, related to "the Query Object Mo...
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.15
578
VMScore
CVE-2013-7075
The Content Editing Wizards component in TYPO3 4.5.0 up to and including 4.5.31, 4.7.0 up to and including 4.7.16, 6.0.0 up to and including 6.0.11, and 6.1.0 up to and including 6.1.6 allows remote authenticated backend users to unserialize arbitrary PHP objects, delete arbitrar...
Typo3 Typo3 6.0
Typo3 Typo3 6.0.8
Typo3 Typo3 6.0.9
Typo3 Typo3 6.0.6
Typo3 Typo3 6.0.7
Typo3 Typo3 6.0.1
Typo3 Typo3 6.0.2
Typo3 Typo3 6.0.10
Typo3 Typo3 6.0.11
Typo3 Typo3 6.0.3
Typo3 Typo3 6.0.4
Typo3 Typo3 6.0.5
Typo3 Typo3 4.7.13
Typo3 Typo3 4.7.14
Typo3 Typo3 4.7.4
Typo3 Typo3 4.7.5
Typo3 Typo3 4.7.11
Typo3 Typo3 4.7.12
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.15
Typo3 Typo3 4.7.16
578
VMScore
CVE-2012-6144
SQL injection vulnerability in the Backend History module in TYPO3 4.5.x prior to 4.5.21, 4.6.x prior to 4.6.14, and 4.7.x prior to 4.7.6 allows remote authenticated backend users to execute arbitrary SQL commands via unspecified vectors.
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.16
570
VMScore
CVE-2013-1843
Open redirect vulnerability in the Access tracking mechanism in TYPO3 4.5.x prior to 4.5.24, 4.6.x prior to 4.6.17, 4.7.x prior to 4.7.9, and 6.0.x prior to 6.0.3 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified v...
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.14
534
VMScore
CVE-2014-3942
The Color Picker Wizard component in TYPO3 4.5.0 prior to 4.5.34, 4.7.0 prior to 4.7.19, 6.0.0 prior to 6.0.14, and 6.1.0 prior to 6.1.9 allows remote authenticated editors to execute arbitrary PHP code via a serialized PHP object.
Typo3 Typo3 6.1.8
Typo3 Typo3 6.1
Typo3 Typo3 6.1.7
Typo3 Typo3 6.1.3
Typo3 Typo3 6.1.4
Typo3 Typo3 6.1.5
Typo3 Typo3 6.1.6
Typo3 Typo3 6.1.1
Typo3 Typo3 6.1.2
Typo3 Typo3 4.7.14
Typo3 Typo3 4.7.15
Typo3 Typo3 4.7.6
Typo3 Typo3 4.7.7
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.10
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.11
Typo3 Typo3 4.7.12
Typo3 Typo3 4.7.13
Typo3 Typo3 4.7.4
Typo3 Typo3 4.7.5
516
VMScore
CVE-2013-7079
Open redirect vulnerability in the OpenID extension in TYPO3 4.5.0 up to and including 4.5.31, 4.7.0 up to and including 4.7.16, 6.0.0 up to and including 6.0.11, and 6.1.0 up to and including 6.1.6 allows remote malicious users to redirect users to arbitrary web sites and conduc...
Typo3 Typo3 4.5.31
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.28
Typo3 Typo3 4.5.29
Typo3 Typo3 4.5.30
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.21
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.10
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.18
516
VMScore
CVE-2013-7080
The creating record functionality in Extension table administration library (feuser_adminLib.inc) in TYPO3 4.5.0 up to and including 4.5.31, 4.7.0 up to and including 4.7.16, and 6.0.0 up to and including 6.0.11 allows remote malicious users to write to arbitrary fields in the co...
Typo3 Typo3 6.0.6
Typo3 Typo3 6.0.7
Typo3 Typo3 6.0.4
Typo3 Typo3 6.0.5
Typo3 Typo3 6.0
Typo3 Typo3 6.0.1
Typo3 Typo3 6.0.8
Typo3 Typo3 6.0.9
Typo3 Typo3 6.0.2
Typo3 Typo3 6.0.3
Typo3 Typo3 6.0.10
Typo3 Typo3 6.0.11
Typo3 Typo3 4.5.29
Typo3 Typo3 4.5.30
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.21
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.28
445
VMScore
CVE-2014-3941
TYPO3 4.5.0 prior to 4.5.34, 4.7.0 prior to 4.7.19, 6.0.0 prior to 6.0.14, 6.1.0 prior to 6.1.9, and 6.2.0 prior to 6.2.3 allows remote malicious users to have unspecified impact via a crafted HTTP Host header, related to "Host Spoofing."
Typo3 Typo3 4.7.10
Typo3 Typo3 4.7.11
Typo3 Typo3 4.7.3
Typo3 Typo3 4.7.4
Typo3 Typo3 4.7.18
Typo3 Typo3 4.7.14
Typo3 Typo3 4.7.15
Typo3 Typo3 4.7.7
Typo3 Typo3 4.7.8
Typo3 Typo3 4.7.0
Typo3 Typo3 4.7.1
Typo3 Typo3 4.7.16
Typo3 Typo3 4.7.17
Typo3 Typo3 4.7.2
Typo3 Typo3 4.7.9
Typo3 Typo3 4.7.12
Typo3 Typo3 4.7.13
Typo3 Typo3 4.7.5
Typo3 Typo3 4.7.6
Typo3 Typo3 4.5.33
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.15
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
firewall
CVE-2024-35649
stored XSS
CVE-2022-28654
CVE-2020-35153
CVE-2024-27348
CVE-2022-28652
local users
CVE-2017-3506
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »