CVE-2011-4903: XSS
Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to inject arbitrary web script or HTML via the RemoveXSS function.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4903?
CVE-2011-4903 is classified as a high-severity vulnerability due to its potential for allowing remote attackers to execute arbitrary scripts in the context of a user session.
How do I fix CVE-2011-4903?
To fix CVE-2011-4903, you need to upgrade to TYPO3 versions 4.3.12, 4.4.9, or 4.5.4 or later.
What versions of TYPO3 are affected by CVE-2011-4903?
CVE-2011-4903 affects TYPO3 versions before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4.
What type of vulnerability is CVE-2011-4903?
CVE-2011-4903 is a Cross-site Scripting (XSS) vulnerability, which allows attackers to inject arbitrary web scripts or HTML.
Who can exploit CVE-2011-4903?
CVE-2011-4903 can be exploited by remote attackers who have the ability to manipulate web content served by vulnerable TYPO3 installations.