PT-2019-14766 · Typo3 · Url Redirect Extension
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
TYPO3 url redirect extension versions through 1.2.1
Description
The issue is related to the failure of the url redirect extension to properly sanitize user input, making it susceptible to SQL Injection.
Recommendations
For versions through 1.2.1, update to a version that includes the fix for this issue.
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Url Redirect Extension