CVE-2009-4963
28.07.2010, 14:43
Cross-site scripting (XSS) vulnerability in the Commerce extension before 0.9.9 for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
typo3 | commerce_extension | 𝑥 ≤ 0.9.8 |
typo3 | commerce_extension | 0.8.32 |
typo3 | commerce_extension | 0.8.35 |
typo3 | commerce_extension | 0.9.0 |
typo3 | commerce_extension | 0.9.5 |
typo3 | commerce_extension | 0.9.6 |
typo3 | commerce_extension | 0.9.7 |
𝑥
= Vulnerable software versions
References