First published: Fri Oct 07 2011(Updated: )
SQL injection vulnerability in the Tiny Market (hm_tinymarket) extension 0.5.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
tinymarket | <=0.5.4 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4888 is classified as having a high severity due to its potential to allow remote SQL injection attacks.
To fix CVE-2010-4888, you should upgrade the Tiny Market extension to version 0.5.5 or later.
CVE-2010-4888 affects the Tiny Market extension version 0.5.4 and earlier for TYPO3.
The potential impacts of CVE-2010-4888 include the execution of arbitrary SQL commands and unauthorized access to the database.
Yes, a patch is available through the update to Tiny Market version 0.5.5 or later.