CVE-2008-3037: XSS
Published Jul 7, 2008
·Updated
Cross-site scripting (XSS) vulnerability in the Address Directory (spdirectory) extension 0.2.10 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
Typo3 Address Directory<=0.2.10
Event History
Jul 7, 2008
CVE Published
via MITRE·06:20 PM
Data Sourced
via MITRE·06:20 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3037?
CVE-2008-3037 has a medium severity risk due to its potential for exploitation via cross-site scripting.
2
How do I fix CVE-2008-3037?
To fix CVE-2008-3037, update the TYPO3 Address Directory extension to version 0.2.11 or later.
3
What systems are affected by CVE-2008-3037?
CVE-2008-3037 affects TYPO3 Address Directory extension versions up to and including 0.2.10.
4
What type of vulnerability is CVE-2008-3037?
CVE-2008-3037 is a cross-site scripting (XSS) vulnerability allowing injection of arbitrary web scripts.
5
Can remote attackers exploit CVE-2008-3037?
Yes, CVE-2008-3037 can be exploited by remote attackers to inject malicious scripts.