First published: Mon Mar 15 2010(Updated: )
SQL injection vulnerability in the CoolURI (cooluri) extension before 1.0.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2008-6686.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
jan bednarik CoolURI | <=1.0.15 | |
jan bednarik CoolURI | =1.0.11 | |
jan bednarik CoolURI | =1.0.12 | |
jan bednarik CoolURI | =1.0.13 | |
jan bednarik CoolURI | =1.0.14 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4711 has a moderate severity level due to the potential for SQL injection attacks.
To fix CVE-2009-4711, upgrade the CoolURI extension to version 1.0.16 or later.
CVE-2009-4711 affects all versions of the CoolURI extension prior to 1.0.16.
CVE-2009-4711 is categorized as an SQL injection vulnerability.
Yes, CVE-2009-4711 can impact TYPO3 installations that use vulnerable versions of the CoolURI extension.