This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:typo3:typo3:4.3.5
Detail
Vendortypo3First view 2010-10-25
Producttypo3Last view 2014-06-03
Version4.3.5TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:typo3:typo3

Activity : Overall

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentication
4 2014-06-03 CVE-2014-3945 Network High None Requ...
6.8 2012-05-30 CVE-2010-5099 Network Medium None Requ...
4.3 2012-05-21 CVE-2010-5104 Network Medium None Requ...
6 2012-05-21 CVE-2010-5103 Network Medium Requires ...
5 2012-05-21 CVE-2010-5102 Network Low None Requ...
Hide | Show 9 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
4 2012-05-21 CVE-2010-5101 Network Low Requires ...
3.5 2012-05-21 CVE-2010-5100 Network Medium Requires ...
3.5 2012-05-21 CVE-2010-5098 Network Medium Requires ...
2.6 2012-05-21 CVE-2010-5097 Network High None Requ...
4.9 2010-10-25 CVE-2010-4068 Network Medium Requires ...
5 2010-10-25 CVE-2010-3717 Network Low None Requ...
6 2010-10-25 CVE-2010-3716 Network Medium Requires ...
4.3 2010-10-25 CVE-2010-3715 Network Medium None Requ...
7.1 2010-10-25 CVE-2010-3714 Network Medium None Requ...

CWE : Common Weakness Enumeration

%idName
28% (4)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
21% (3)CWE-20Improper Input Validation
14% (2)CWE-264Permissions, Privileges, and Access Controls
14% (2)CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path ...
7% (1)CWE-287Improper Authentication
Hide | Show 2 More...
%idName
7% (1)CWE-200Information Exposure
7% (1)CWE-89Improper Sanitization of Special Elements used in an SQL Command ('...

Open Source Vulnerability Database (OSVDB)

idDescription
69219TYPO3 t3lib_div::validEmail Function PHP FILTER_VALIDATE_EMAIL Operation Remo...
69218TYPO3 Extension Manager Unspecified Arbitrary File Access
68593TYPO3 typo3/sysext/em/mod1/class.em_index.php Unspecified Traversal Arbitrary...
68592TYPO3 Taskcenter sys_action Task Arbitrary User Creation
68591TYPO3 typo3/contrib/RemoveXSS/RemoveXSS.php Unspecified XSS
Hide | Show 1 More...
idDescription
68590TYPO3 typo3/sysext/cms/tslib/class.tslib_fe.php jumpURL Parameter Traversal A...

ExploitDB Exploits

idDescription
15856TYPO3 Unauthenticated Arbitrary File Retrieval

OpenVAS Exploits

idDescription
2010-11-17Name : Debian Security Advisory DSA 2121-1 (typo3-src)
File : nvt/deb_2121_1.nasl

Nessus® Vulnerability Scanner

idDescription
2010-10-20Name : The remote Debian host is missing a security-related update.
File : debian_DSA-2121.nasl - Type : ACT_GATHER_INFO