Vulnerabilities > SR Freecap Project

DATE CVE VULNERABILITY TITLE RISK
2019-10-16 CVE-2019-16699 Improper Input Validation vulnerability in SR Freecap Project SR Freecap
The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user input, which allows execution of arbitrary Extbase actions, resulting in Remote Code Execution.
network
low complexity
sr-freecap-project CWE-20
critical
9.8