First published: Wed Dec 31 2008(Updated: )
Cross-site scripting (XSS) vulnerability in the eluna Page Comments (eluna_pagecomments) extension 1.1.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TYPO3 eluna Page Comments extension | <=1.1.2 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5795 has a moderate severity level due to its potential for XSS attacks.
To fix CVE-2008-5795, update the eluna Page Comments extension to version 1.1.3 or later.
CVE-2008-5795 affects the eluna Page Comments extension versions 1.1.2 and earlier for TYPO3.
Yes, CVE-2008-5795 can be exploited remotely by injecting arbitrary web scripts or HTML.
CVE-2008-5795 enables cross-site scripting (XSS) attacks.