BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Typo3 v4.x: XSS in extension "Indexed Search" v2.9.0 Sep 25 2006 11:16AM
Moritz Naumann (security moritz-naumann com)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

There's a XSS issue in the 'Indexed search' extension 2.9.0 for Typo3.
This extension is part of a default Typo3 4.0.x installlation.

Typo3 4.0.2 fixes it.

http://typo3.org/teams/security/security-bulletins/typo3-20060911-1/

Credits go to Mr. Ekkehar...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus