Vulnerabilities > Michael Fritz

DATE CVE VULNERABILITY TITLE RISK
2009-04-10 CVE-2008-6698 Cross-Site Scripting vulnerability in Michael Fritz Worldcup
Cross-site scripting (XSS) vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
4.3
2009-04-10 CVE-2008-6697 SQL Injection vulnerability in Michael Fritz Worldcup
SQL injection vulnerability in TARGET-E WorldCup Bets (worldcup) 2.0.0 and earlier extension for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
network
low complexity
typo3 michael-fritz CWE-89
7.5