TYPO3 T3 jQuery Extension Arbitrary PHP Code Execution Vulnerability
BID:57280
Info
TYPO3 T3 jQuery Extension Arbitrary PHP Code Execution Vulnerability
| Bugtraq ID: | 57280 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 11 2013 12:00AM |
| Updated: | Jan 11 2013 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
TYPO3 T3 jQuery Extension Arbitrary PHP Code Execution Vulnerability
TYPO3 T3 jQuery extension is prone to an arbitrary PHP code-execution vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker can exploit this issue to execute arbitrary PHP code within the context of the web server.
TYPO3 T3 jQuery 2.2.0 and prior are vulnerable.
TYPO3 T3 jQuery extension is prone to an arbitrary PHP code-execution vulnerability because it fails to sufficiently sanitize user-supplied input.
An attacker can exploit this issue to execute arbitrary PHP code within the context of the web server.
TYPO3 T3 jQuery 2.2.0 and prior are vulnerable.
Solution / Fix
TYPO3 T3 jQuery Extension Arbitrary PHP Code Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
TYPO3 T3 jQuery Extension Arbitrary PHP Code Execution Vulnerability
References:
References: