Weakness Name | Source | |
---|---|---|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 3.5 | AV:N/AC:M/Au:S/C:N/I:P/A:N | [email protected] |
Typo3>>Typo3 >> Version 4.5
Typo3>>Typo3 >> Version 4.5.0
Typo3>>Typo3 >> Version 4.5.1
Typo3>>Typo3 >> Version 4.5.2
Typo3>>Typo3 >> Version 4.5.3
Typo3>>Typo3 >> Version 4.5.4
Typo3>>Typo3 >> Version 4.5.5
Typo3>>Typo3 >> Version 4.5.6
Typo3>>Typo3 >> Version 4.5.7
Typo3>>Typo3 >> Version 4.5.8
Typo3>>Typo3 >> Version 4.5.9
Typo3>>Typo3 >> Version 4.5.10
Typo3>>Typo3 >> Version 4.5.11
Typo3>>Typo3 >> Version 4.5.12
Typo3>>Typo3 >> Version 4.5.13
Typo3>>Typo3 >> Version 4.5.14
Typo3>>Typo3 >> Version 4.5.15
Typo3>>Typo3 >> Version 4.5.16
Typo3>>Typo3 >> Version 4.5.17
Typo3>>Typo3 >> Version 4.5.18
Typo3>>Typo3 >> Version 4.6
Typo3>>Typo3 >> Version 4.6.0
Typo3>>Typo3 >> Version 4.6.1
Typo3>>Typo3 >> Version 4.6.2
Typo3>>Typo3 >> Version 4.6.3
Typo3>>Typo3 >> Version 4.6.4
Typo3>>Typo3 >> Version 4.6.5
Typo3>>Typo3 >> Version 4.6.6
Typo3>>Typo3 >> Version 4.6.7
Typo3>>Typo3 >> Version 4.6.8
Typo3>>Typo3 >> Version 4.6.9
Typo3>>Typo3 >> Version 4.6.10
Typo3>>Typo3 >> Version 4.6.11
Typo3>>Typo3 >> Version 4.7
Typo3>>Typo3 >> Version 4.7.0
Typo3>>Typo3 >> Version 4.7.1
Typo3>>Typo3 >> Version 4.7.2
Typo3>>Typo3 >> Version 4.7.3