Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
typo3 typo3 4.7 vulnerabilities and exploits
(subscribe to this query)
685
VMScore
CVE-2011-4614
PHP remote file inclusion vulnerability in Classes/Controller/AbstractController.php in the workspaces system extension in TYPO3 4.5.x prior to 4.5.9, 4.6.x prior to 4.6.2, and development versions of 4.7 allows remote malicious users to execute arbitrary PHP code via a URL in th...
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.2
Typo3 Typo3 4.6
Typo3 Typo3 4.6.1
1 EDB exploit
668
VMScore
CVE-2013-1842
SQL injection vulnerability in the Extbase Framework in TYPO3 4.5.x prior to 4.5.24, 4.6.x prior to 4.6.17, 4.7.x prior to 4.7.9, and 6.0.x prior to 6.0.3 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors, related to "the Query Object Mo...
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.2
578
VMScore
CVE-2012-6144
SQL injection vulnerability in the Backend History module in TYPO3 4.5.x prior to 4.5.21, 4.6.x prior to 4.6.14, and 4.7.x prior to 4.7.6 allows remote authenticated backend users to execute arbitrary SQL commands via unspecified vectors.
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.10
570
VMScore
CVE-2013-1843
Open redirect vulnerability in the Access tracking mechanism in TYPO3 4.5.x prior to 4.5.24, 4.6.x prior to 4.6.17, 4.7.x prior to 4.7.9, and 6.0.x prior to 6.0.3 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified v...
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.19
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.22
Typo3 Typo3 4.5.2
445
VMScore
CVE-2012-1605
The Extbase Framework in TYPO3 4.6.x up to and including 4.6.6, 4.7, and 6.0 unserializes untrusted data, which allows remote malicious users to unserialize arbitrary objects and possibly execute arbitrary code via vectors related to "a missing signature (HMAC) for a request...
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.3
Typo3 Typo3 4.6.0
Typo3 Typo3 6.0
Typo3 Typo3 4.6.5
Typo3 Typo3 4.6
Typo3 Typo3 4.6.1
Typo3 Typo3 4.6.4
Typo3 Typo3 4.7
Typo3 Typo3 4.6.2
445
VMScore
CVE-2012-1607
The Command Line Interface (CLI) script in TYPO3 4.4.0 up to and including 4.4.13, 4.5.0 up to and including 4.5.13, 4.6.0 up to and including 4.6.6, 4.7, and 6.0 allows remote malicious users to obtain the database name via a direct request.
Typo3 Typo3 4.4.13
Typo3 Typo3 4.4.4
Typo3 Typo3 4.4.5
Typo3 Typo3 4.4.11
Typo3 Typo3 4.4.1
Typo3 Typo3 4.4.2
Typo3 Typo3 4.4.6
Typo3 Typo3 4.4.7
Typo3 Typo3 4.4.0
Typo3 Typo3 4.4.9
Typo3 Typo3 4.4
Typo3 Typo3 4.4.8
Typo3 Typo3 4.4.10
Typo3 Typo3 4.4.3
Typo3 Typo3 4.4.12
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.7
445
VMScore
CVE-2012-1608
The t3lib_div::RemoveXSS API method in TYPO3 4.4.0 up to and including 4.4.13, 4.5.0 up to and including 4.5.13, 4.6.0 up to and including 4.6.6, 4.7, and 6.0 allows remote malicious users to bypass the cross-site scripting (XSS) protection mechanism and inject arbitrary web scri...
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.3
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.4.13
Typo3 Typo3 4.5.8
Typo3 Typo3 4.4.4
Typo3 Typo3 4.4.5
Typo3 Typo3 4.6.0
Typo3 Typo3 4.4.11
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.6
Typo3 Typo3 6.0
Typo3 Typo3 4.4.1
Typo3 Typo3 4.5.0
Typo3 Typo3 4.6.5
Typo3 Typo3 4.4.2
Typo3 Typo3 4.4.6
Typo3 Typo3 4.4.7
409
VMScore
CVE-2012-3527
view_help.php in the backend help system in TYPO3 4.5.x prior to 4.5.19, 4.6.x prior to 4.6.12 and 4.7.x prior to 4.7.4 allows remote authenticated backend users to unserialize arbitrary objects and possibly execute arbitrary PHP code via an unspecified parameter, related to a &q...
Typo3 Typo3
Debian Debian Linux 7.0
Debian Debian Linux 6.0
383
VMScore
CVE-2013-7076
Cross-site scripting (XSS) vulnerability in Extension Manager in TYPO3 4.5.x prior to 4.5.32 and 4.7.x prior to 4.7.17 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Typo3 Typo3 4.5.30
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.27
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.24
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.23
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.20
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5.26
Typo3 Typo3 4.5.29
Typo3 Typo3 4.5.21
Typo3 Typo3 4.5.31
383
VMScore
CVE-2012-3531
Cross-site scripting (XSS) vulnerability in the Install Tool in TYPO3 4.5.x prior to 4.5.19, 4.6.x prior to 4.6.12 and 4.7.x prior to 4.7.4 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Typo3 Typo3 4.5.3
Typo3 Typo3 4.5.9
Typo3 Typo3 4.5.12
Typo3 Typo3 4.5.15
Typo3 Typo3 4.5.5
Typo3 Typo3 4.5.13
Typo3 Typo3 4.5.17
Typo3 Typo3 4.5.8
Typo3 Typo3 4.5.14
Typo3 Typo3 4.5.7
Typo3 Typo3 4.5.6
Typo3 Typo3 4.5.18
Typo3 Typo3 4.5.0
Typo3 Typo3 4.5
Typo3 Typo3 4.5.11
Typo3 Typo3 4.5.1
Typo3 Typo3 4.5.16
Typo3 Typo3 4.5.4
Typo3 Typo3 4.5.2
Typo3 Typo3 4.5.10
Typo3 Typo3 4.6.6
Typo3 Typo3 4.6.3
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »