CVE-2008-4660: SQL Injection
Published Oct 21, 2008
·Updated
SQL injection vulnerability in the M1 Intern (m1intern) 1.0.0 extension for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
2 affected components
Typo3 M1 Intern=1.0.0
Typo3 TYPO3
Event History
Oct 21, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Oct 22, 2008
Data Sourced
12:11 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-4660?
CVE-2008-4660 is considered a critical SQL injection vulnerability that can lead to arbitrary SQL command execution.
2
How do I fix CVE-2008-4660?
To fix CVE-2008-4660, upgrade the M1 Intern extension to a version that is not vulnerable.
3
What software is affected by CVE-2008-4660?
CVE-2008-4660 affects the M1 Intern extension version 1.0.0 for TYPO3.
4
Can CVE-2008-4660 be exploited remotely?
Yes, CVE-2008-4660 can be exploited remotely by attackers to execute SQL commands.
5
What are the potential impacts of CVE-2008-4660?
Exploitation of CVE-2008-4660 can lead to unauthorized data access, data corruption, and compromise of the underlying database.