First published: Mon Oct 28 2013(Updated: )
Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/apache-solr-for-typo3/solr | <2.8.3 | 2.8.3 |
Apache Solr | <=2.8.2 | |
Apache Solr | =1.0 | |
Apache Solr | =1.3.0 | |
Apache Solr | =1.3.1 | |
Apache Solr | =2.1.0 | |
Apache Solr | =2.2.0 | |
Apache Solr | =2.2.1 | |
Apache Solr | =2.2.2 | |
Apache Solr | =2.8.0 | |
Apache Solr | =2.8.1 | |
TYPO3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6289 is considered a high severity cross-site scripting (XSS) vulnerability that can lead to arbitrary script injection.
To fix CVE-2013-6289, upgrade the Apache Solr for TYPO3 extension to version 2.8.3 or later.
CVE-2013-6289 affects all versions of the Apache Solr for TYPO3 extension prior to version 2.8.3.
Yes, CVE-2013-6289 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.
CVE-2013-6289 impacts the Apache Solr for TYPO3 extension versions before 2.8.3.