Vulnerabilities > Karlen Walter

DATE CVE VULNERABILITY TITLE RISK
2014-05-16 CVE-2014-3759 SQL Injection vulnerability in Karlen Walter SI Bibtex 0.2.3
Multiple SQL injection vulnerabilities in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allow remote attackers to execute arbitrary SQL commands via vectors related to the (1) search or (2) list functionality.
network
low complexity
karlen-walter CWE-89
7.5
2014-05-16 CVE-2014-3758 Cross-Site Scripting vulnerability in Karlen Walter SI Bibtex 0.2.3
Cross-site scripting (XSS) vulnerability in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via vectors related to the import functionality.
4.3