HIGH7.4CVE-2013-1842TYPO3 SQL injection vulnerability in the Extbase Framework from 0, < 4.3.9+dfsg1-1+squeeze8
MEDIUM6.5CVE-2013-7073TYPO3 vulnerable to Information Disclosure via Content Editing Wizards component from 0, < 4.3.9+dfsg1-1+squeeze9
MEDIUM5.4CVE-2010-3659TYPO3 Cross-site Scripting vulnerability in the extension manager and backend forms from 0, < 4.2.5-1+lenny4
—TYPO3 Remote File Disclosure vulnerability in the jumpUrl mechanism
from 0, < 4.2.5-1+lenny6
—Typo3 Backend XSS Vulnerabilities
from 0, < 4.3.9+dfsg1-1+squeeze3
—Typo3 Exception Handler XSS
from 0, < 4.3.9+dfsg1-1+squeeze4
—TYPO3 allows remote authenticated backend users to unserialize arbitrary objects
from 0, < 4.3.9+dfsg1-1+squeeze5
—Typo3 Backend History Module Vulnerable to SQL Injection
from 0, < 4.3.9+dfsg1-1+squeeze7
—Typo3 Host Header Spoofing Vulnerability
from 0, < 4.5.19+dfsg1-5+wheezy3
—TYPO3 Backend Discloses Encryption Key
from 0, < 4.0.2+debian-9
—TYPO3 leaks a hash secret in an error message
from 0, < 4.2.5-1+lenny1
—TYPO3 Unrestricted File Upload vulnerability
from 0, < 4.0.2+debian-5
—typo3-src - security update
from 0, < 4.5.19+dfsg1-5+wheezy4
—typo3-src - cross-site scripting
from 0, < 4.5.19+dfsg1-5+wheezy1
—typo3-src - several
from 0, < 4.2.5-1+lenny8
—typo3-src - remote code execution
from 0, < 4.0.2+debian-7
—typo3-src
from 0, < 4.0.2+debian-4