CVE-2008-6458 Information

Description

SQL injection vulnerability in the FE address edit for tt_address & direct mail (dmaddredit) extension 0.4.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

Reference

http://osvdb.org/48274 http://typo3.org/teams/security/security-bulletins/typo3-20080919-1/ http://www.securityfocus.com/bid/31259 https://exchange.xforce.ibmcloud.com/vulnerabilities/45257

Share on: