CVE-2010-3669: XSS
Published Nov 4, 2019
·Updated
TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS and Open Redirection in the frontend login box.
Affected Software
4 affected components
debian/typo3-src
Typo3 TYPO3>=4.4.0<4.4.1
Typo3 TYPO3>=4.3.0<4.3.4
Typo3 TYPO3>=4.2.0<4.2.13
Event History
Nov 4, 2019
CVE Published
via MITRE·10:04 PM
Data Sourced
via MITRE·10:04 PM
Description
Feb 17, 2026
Data Sourced
via Debian·10:17 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-3669?
CVE-2010-3669 is classified as a medium severity vulnerability due to its potential for XSS and open redirection attacks.
2
How do I fix CVE-2010-3669?
To fix CVE-2010-3669, update TYPO3 to version 4.2.13, 4.3.4, or 4.4.1 or later.
3
What versions of TYPO3 are affected by CVE-2010-3669?
CVE-2010-3669 affects TYPO3 versions prior to 4.2.13, 4.3.x before 4.3.4, and 4.4.x before 4.4.1.
4
What kind of attacks does CVE-2010-3669 allow?
CVE-2010-3669 allows for cross-site scripting (XSS) and open redirection attacks in the frontend login box.
5
Is CVE-2010-3669 related to any specific components in TYPO3?
CVE-2010-3669 is specifically related to vulnerabilities in the frontend login box component of TYPO3.