Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-79917
HistoryApr 28, 2022 - 12:00 a.m.

TYPO3 Seminar Manager SQL Injection Vulnerability

2022-04-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
typo3
seminar manager
sql injection
swiss typo3 association
cms
cmf
inadequate cleaning
user-supplied data
remote attacker
arbitrary sql commands
application database

EPSS

0.002

Percentile

55.3%

TYPO3 is a content management system (framework) (CMS/CMF) from the Swiss TYPO3 Association.TYPO3 Seminar Manager 4.1.3 and earlier versions are vulnerable to SQL injection, which stems from inadequate cleaning of user-supplied data. A remote attacker could use this vulnerability to send a specially crafted request to execute arbitrary SQL commands in the application database.

EPSS

0.002

Percentile

55.3%

Related for CNVD-2022-79917