First published: Wed Dec 31 2008(Updated: )
SQL injection vulnerability in the CMS Poll system (cms_poll) extension before 0.1.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TYPO3 CMS Poll system extension | <=0.1.0 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5798 is classified as a critical vulnerability due to its potential for remote SQL command execution.
To mitigate CVE-2008-5798, update the CMS Poll system extension to version 0.1.1 or later.
CVE-2008-5798 allows remote attackers to execute arbitrary SQL commands, compromising the integrity and security of the TYPO3 application.
No, CVE-2008-5798 is only present in the CMS Poll system extension version 0.1.0 and earlier.
Any TYPO3 users running the CMS Poll system extension versions prior to 0.1.1 are at risk of CVE-2008-5798.