CVE-2010-1013: SQL Injection
SQL injection vulnerability in the Diocese of Portsmouth Database (pddiocesedatabase) extension before 0.7.13 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1013?
CVE-2010-1013 has been classified as a critical severity vulnerability due to the potential for remote SQL injection attacks.
How do I fix CVE-2010-1013?
To fix CVE-2010-1013, upgrade the Diocese of Portsmouth Database extension to version 0.7.13 or later.
Which versions are affected by CVE-2010-1013?
CVE-2010-1013 affects versions of the Diocese of Portsmouth Database extension before 0.7.13, including versions 0.7.5 to 0.7.12.
Can CVE-2010-1013 lead to data compromise?
Yes, CVE-2010-1013 can allow attackers to execute arbitrary SQL commands, potentially leading to data compromise.
Is TYPO3 itself affected by CVE-2010-1013?
No, TYPO3 itself is not affected by CVE-2010-1013, only the Diocese of Portsmouth Database extension.