CVE-2011-3583
26.11.2019, 00:15
It was found that Typo3 Core versions 4.5.0 - 4.5.5 uses prepared statements that, if the parameter values are not properly replaced, could lead to a SQL Injection vulnerability. This issue can only be exploited if two or more parameters are bound to the query and at least two come from user input.
Vendor | Product | Version |
---|---|---|
typo3 | typo3 | 4.5.0 ≤ 𝑥 ≤ 4.5.5 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References