Lucene search

K
cvelistRedhatCVELIST:CVE-2011-4626
HistoryNov 06, 2019 - 4:07 p.m.

CVE-2011-4626

2019-11-0616:07:45
redhat
www.cve.org
4

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

47.1%

Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to inject arbitrary web script or HTML via the “JSwindow” property of the typolink function.

CNA Affected

[
  {
    "product": "TYPO3",
    "vendor": "TYPO3",
    "versions": [
      {
        "status": "affected",
        "version": "before 4.5.4"
      }
    ]
  }
]

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

47.1%

Related for CVELIST:CVE-2011-4626