CVE-2008-2526: XSS
Published Jun 3, 2008
·Updated
Cross-site scripting (XSS) vulnerability in the WT Gallery (aka wtgallery) extension 2.6.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
2 affected components
Typo3 WT Gallery<=2.62
Typo3 WT Gallery=2.50
Remediation
Event History
Jun 3, 2008
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-2526?
CVE-2008-2526 is classified as a medium severity cross-site scripting vulnerability.
2
How do I fix CVE-2008-2526?
To fix CVE-2008-2526, update the WT Gallery extension to version 2.6.3 or later.
3
Which versions are affected by CVE-2008-2526?
CVE-2008-2526 affects the WT Gallery extension version 2.6.2 and earlier.
4
What type of vulnerability is CVE-2008-2526?
CVE-2008-2526 is a cross-site scripting (XSS) vulnerability.
5
Who can exploit CVE-2008-2526?
Remote attackers can exploit CVE-2008-2526 to inject arbitrary web scripts or HTML.