CVE-2013-4634: SQL Injection
SQL injection vulnerability in the jQuery autocomplete for indexedsearch (rzautocomplete) extension before 0.0.9 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4634?
CVE-2013-4634 is classified as a high severity vulnerability due to its potential for remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2013-4634?
To fix CVE-2013-4634, upgrade the jQuery autocomplete for indexed_search (rzautocomplete) extension to version 0.0.9 or later.
What software is affected by CVE-2013-4634?
CVE-2013-4634 affects versions 0.0.2 to 0.0.8 of the rzautocomplete extension by Raphael Zschorsch.
What type of vulnerability is CVE-2013-4634?
CVE-2013-4634 is an SQL injection vulnerability that allows execution of arbitrary SQL commands.
Can CVE-2013-4634 be exploited remotely?
Yes, CVE-2013-4634 can be exploited remotely by attackers without requiring access to the affected system.