Product:

Typo3

(Typo3)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 186
Date Id Summary Products Score Patch Annotated
2006-09-27 CVE-2006-5069 Cross-site scripting (XSS) vulnerability in class.tx_indexedsearch.php in the Indexed Search 2.9.0 extension for Typo3 before 4.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. Typo3 N/A
2006-01-20 CVE-2006-0327 TYPO3 3.7.1 allows remote attackers to obtain sensitive information via a direct request to (1) thumbs.php, (2) showpic.php, or (3) tables.php, which causes them to incorrectly define a variable and reveal the path in an error message when a require function call fails. Typo3 N/A
2005-12-31 CVE-2005-4875 TYPO3 3.8.0 and earlier allows remote attackers to obtain sensitive information via a direct request to misc/phpcheck/, which invokes the phpinfo function and prints values of unspecified environment variables. Typo3 N/A