CVE-2012-1084: XSS
Cross-site scripting (XSS) vulnerability in the BE User Switch (beuserswitch) extension 0.0.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1084?
CVE-2012-1084 has a medium severity rating due to the cross-site scripting (XSS) vulnerability it introduces.
How do I fix CVE-2012-1084?
To fix CVE-2012-1084, you should update the BE User Switch extension to a patched version or remove it entirely if it is not in use.
Who is affected by CVE-2012-1084?
CVE-2012-1084 affects installations of the BE User Switch extension version 0.0.1 for TYPO3.
What type of vulnerability is CVE-2012-1084?
CVE-2012-1084 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Can I use earlier versions of BE User Switch after CVE-2012-1084?
Using earlier versions of BE User Switch may expose your site to CVE-2012-1084 vulnerabilities and is not recommended.