Nom de la faiblesse | Source | |
---|---|---|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data. |
Métriques | Score | Gravité | CVSS Vecteur | Source |
---|---|---|---|---|
V2 | 6.5 | AV:N/AC:L/Au:S/C:P/I:P/A:P | [email protected] |
Typo3>>Typo3 >> Version 4.5
Typo3>>Typo3 >> Version 4.5.0
Typo3>>Typo3 >> Version 4.5.1
Typo3>>Typo3 >> Version 4.5.2
Typo3>>Typo3 >> Version 4.5.3
Typo3>>Typo3 >> Version 4.5.4
Typo3>>Typo3 >> Version 4.5.5
Typo3>>Typo3 >> Version 4.5.6
Typo3>>Typo3 >> Version 4.5.7
Typo3>>Typo3 >> Version 4.5.8
Typo3>>Typo3 >> Version 4.5.9
Typo3>>Typo3 >> Version 4.5.10
Typo3>>Typo3 >> Version 4.5.11
Typo3>>Typo3 >> Version 4.5.12
Typo3>>Typo3 >> Version 4.5.13
Typo3>>Typo3 >> Version 4.5.14
Typo3>>Typo3 >> Version 4.5.15
Typo3>>Typo3 >> Version 4.5.16
Typo3>>Typo3 >> Version 4.5.17
Typo3>>Typo3 >> Version 4.5.18
Typo3>>Typo3 >> Version 4.5.19
Typo3>>Typo3 >> Version 4.5.20
Typo3>>Typo3 >> Version 4.6
Typo3>>Typo3 >> Version 4.6.0
Typo3>>Typo3 >> Version 4.6.1
Typo3>>Typo3 >> Version 4.6.2
Typo3>>Typo3 >> Version 4.6.3
Typo3>>Typo3 >> Version 4.6.4
Typo3>>Typo3 >> Version 4.6.5
Typo3>>Typo3 >> Version 4.6.6
Typo3>>Typo3 >> Version 4.6.7
Typo3>>Typo3 >> Version 4.6.8
Typo3>>Typo3 >> Version 4.6.9
Typo3>>Typo3 >> Version 4.6.10
Typo3>>Typo3 >> Version 4.6.11
Typo3>>Typo3 >> Version 4.6.12
Typo3>>Typo3 >> Version 4.6.13
Typo3>>Typo3 >> Version 4.7
Typo3>>Typo3 >> Version 4.7.0
Typo3>>Typo3 >> Version 4.7.1
Typo3>>Typo3 >> Version 4.7.2
Typo3>>Typo3 >> Version 4.7.3
Typo3>>Typo3 >> Version 4.7.4
Typo3>>Typo3 >> Version 4.7.5