CVE-2013-4721: SQL Injection
Published Jun 27, 2013
·Updated
SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
2 affected components
3DS Push2rss 3ds<=1.0.0
Typo3 TYPO3
Event History
Jun 27, 2013
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-4721?
CVE-2013-4721 is considered to be a high severity vulnerability due to the potential for remote SQL command execution.
2
How do I fix CVE-2013-4721?
To fix CVE-2013-4721, upgrade the RSS feed from records extension to version 1.0.1 or later.
3
What software is affected by CVE-2013-4721?
CVE-2013-4721 affects the push2rss extension version 1.0.0 and earlier for TYPO3.
4
Can CVE-2013-4721 be exploited remotely?
Yes, CVE-2013-4721 can be exploited by remote attackers through unspecified vectors.
5
What are the potential impacts of CVE-2013-4721?
The potential impacts of CVE-2013-4721 include unauthorized access to the database and execution of arbitrary SQL commands.