CVE-2008-3043: Code Injection
Published Jul 7, 2008
·Updated
Unspecified vulnerability in the WEC Discussion Forum (wecdiscussion) extension 1.6.2 and earlier for TYPO3 allows attackers to execute arbitrary code via vectors related to "certain file types."
Affected Software
3 affected components
Typo3 WEC Discussion Forum<=1.6.2
Typo3 WEC Discussion Forum=1.6.0
Typo3 WEC Discussion Forum=1.6.1
Remediation
Event History
Jul 7, 2008
CVE Published
via MITRE·06:20 PM
Data Sourced
via MITRE·06:20 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3043?
CVE-2008-3043 has a moderate severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2008-3043?
To fix CVE-2008-3043, upgrade the WEC Discussion Forum extension to version 1.6.3 or later.
3
What versions are affected by CVE-2008-3043?
CVE-2008-3043 affects WEC Discussion Forum versions 1.6.2 and earlier.
4
What is the nature of the vulnerability in CVE-2008-3043?
CVE-2008-3043 allows attackers to execute arbitrary code through certain file type handling issues.
5
Can CVE-2008-3043 affect my TYPO3 website?
Yes, if you are using an affected version of the WEC Discussion Forum extension, your TYPO3 website may be at risk.