Vulnerabilities > Michael Fritz
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-04-10 | CVE-2008-6698 | Cross-Site Scripting vulnerability in Michael Fritz Worldcup Cross-site scripting (XSS) vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | 4.3 |
2009-04-10 | CVE-2008-6697 | SQL Injection vulnerability in Michael Fritz Worldcup SQL injection vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. | 7.5 |