Vulnerabilities > Typo3 > AIR Filemanager
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-05-19 | CVE-2008-2345 | Code Injection vulnerability in Typo3 AIR Filemanager Unspecified vulnerability in the air_filemanager 0.6.0 and earlier extension for TYPO3 allows remote attackers to execute arbitrary PHP code via unspecified vectors related to "insufficient file filtering." | 10.0 |
2008-05-19 | CVE-2008-2344 | Cross-Site Scripting vulnerability in Typo3 AIR Filemanager 0.6.0 Cross-site scripting (XSS) vulnerability in the air_filemanager 0.6.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 4.3 |