CVE-2009-4709

SQL injection vulnerability in the datamints Newsticker (datamints_newsticker) extension before 0.7.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 57%
VendorProductVersion
dirk_maiwertdatamints_newsticker
𝑥
≤ 0.7.1
dirk_maiwertdatamints_newsticker
0.1.0
dirk_maiwertdatamints_newsticker
0.4.0
dirk_maiwertdatamints_newsticker
0.5.0
dirk_maiwertdatamints_newsticker
0.6.0
dirk_maiwertdatamints_newsticker
0.6.1
dirk_maiwertdatamints_newsticker
0.6.2
dirk_maiwertdatamints_newsticker
0.6.3
dirk_maiwertdatamints_newsticker
0.7.0
𝑥
= Vulnerable software versions