First published: Tue Jul 27 2010(Updated: )
SQL injection vulnerability in the t3m_affiliate extension 0.5.0 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
typo3-macher t3m affiliate | =0.5.0 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4970 has a moderate severity level due to its potential for SQL injection attacks.
To fix CVE-2009-4970, upgrade the t3m_affiliate extension to a secure version that addresses the SQL injection vulnerability.
CVE-2009-4970 specifically affects the t3m_affiliate extension version 0.5.0 for TYPO3.
Yes, CVE-2009-4970 can allow remote attackers to execute arbitrary SQL commands, potentially compromising the database.
There isn't a specific patch for CVE-2009-4970, but upgrading to a patched version of the t3m_affiliate extension is recommended.