Cross-site scripting (XSS) vulnerability in the Frontend Login Box (aka felogin) subcomponent in TYPO3 4.2.0 up to and including 4.2.6 allows remote malicious users to inject arbitrary web script or HTML via unspecified parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
typo3 typo3 4.2.2 |
||
typo3 typo3 4.2.4 |
||
typo3 typo3 4.2.0 |
||
typo3 typo3 4.2.1 |
||
typo3 typo3 4.2.5 |
||
typo3 typo3 4.2.6 |