4.3
CVSSv2

CVE-2012-1070

Published: 14/02/2012 Updated: 15/02/2012
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Modern FAQ (irfaq) extension 1.1.2 and other versions prior to 1.1.4 for TYPO3 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, possibly related to the "return url parameter."

Vulnerable Product Search on Vulmon Subscribe to Product

netcreators irfaq 1.1.2

netcreators irfaq 1.0.1

netcreators irfaq 1.0.2

netcreators irfaq 1.1.0

netcreators irfaq 1.1.1