CVE-2008-2274
16.05.2008, 12:54
Cross-site scripting (XSS) vulnerability in the sr_feuser_register 1.4.0, 1.6.0, 2.2.1 to 2.2.7, 2.3.0 to 2.3.6, 2.4.0, and 2.5.0 to 2.5.9 extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
| Vendor | Product | Version |
|---|---|---|
| typo3 | sr_feuser_register_extension | 1.4.0 |
| typo3 | sr_feuser_register_extension | 1.6.0 |
| typo3 | sr_feuser_register_extension | 2.2.1 |
| typo3 | sr_feuser_register_extension | 2.2.2 |
| typo3 | sr_feuser_register_extension | 2.2.3 |
| typo3 | sr_feuser_register_extension | 2.2.4 |
| typo3 | sr_feuser_register_extension | 2.2.5 |
| typo3 | sr_feuser_register_extension | 2.2.6 |
| typo3 | sr_feuser_register_extension | 2.2.7 |
| typo3 | sr_feuser_register_extension | 2.3.0 |
| typo3 | sr_feuser_register_extension | 2.3.3 |
| typo3 | sr_feuser_register_extension | 2.3.4 |
| typo3 | sr_feuser_register_extension | 2.3.5 |
| typo3 | sr_feuser_register_extension | 2.3.6 |
| typo3 | sr_feuser_register_extension | 2.4.0 |
| typo3 | sr_feuser_register_extension | 2.5.0 |
| typo3 | sr_feuser_register_extension | 2.5.1 |
| typo3 | sr_feuser_register_extension | 2.5.2 |
| typo3 | sr_feuser_register_extension | 2.5.3 |
| typo3 | sr_feuser_register_extension | 2.5.4 |
| typo3 | sr_feuser_register_extension | 2.5.5 |
| typo3 | sr_feuser_register_extension | 2.5.6 |
| typo3 | sr_feuser_register_extension | 2.5.7 |
| typo3 | sr_feuser_register_extension | 2.5.8 |
| typo3 | sr_feuser_register_extension | 2.5.9 |
𝑥
= Vulnerable software versions
References