3.5
CVSSv2

CVE-2014-3949

Published: 04/06/2014 Updated: 05/06/2014
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the layout wizard in the Grid Elements (gridelements) extension prior to 1.5.1 and 2.0.x prior to 2.0.3 for TYPO3 allows remote authenticated backend users to inject arbitrary web script or HTML via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

jo_hasenau gridelements 1.3.13

jo_hasenau gridelements 1.3.12

jo_hasenau gridelements 1.3.11

jo_hasenau gridelements 1.3.10

jo_hasenau gridelements 1.2.1

jo_hasenau gridelements 1.2.0

jo_hasenau gridelements 1.1.0

jo_hasenau gridelements 1.0.0

jo_hasenau gridelements 1.4.1

jo_hasenau gridelements 1.3.8

jo_hasenau gridelements 1.3.6

jo_hasenau gridelements 1.3.1

jo_hasenau gridelements 1.2.3

jo_hasenau gridelements 0.5.0

jo_hasenau gridelements 0.2.0

jo_hasenau gridelements 1.3.5

jo_hasenau gridelements 1.3.4

jo_hasenau gridelements 1.3.3

jo_hasenau gridelements 1.3.2

jo_hasenau gridelements

jo_hasenau gridelements 1.4.0

jo_hasenau gridelements 1.3.9

jo_hasenau gridelements 1.3.7

jo_hasenau gridelements 1.3.0

jo_hasenau gridelements 1.2.2

jo_hasenau gridelements 0.6.0

jo_hasenau gridelements 0.3.0

jo_hasenau gridelements 0.1.0

jo_hasenau gridelements 2.0.1

jo_hasenau gridelements 2.0.2

jo_hasenau gridelements 2.0.0