Vulnerabilities > Typo3 > KJ Imagelightbox2 > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-05-28 CVE-2008-2490 Cross-Site Scripting vulnerability in Typo3 KJ Imagelightbox2
Cross-site scripting (XSS) vulnerability in the KJ Image Lightbox 2 (aka kj_imagelightbox2) extension 1.4.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified "user input."
network
typo3 CWE-79
4.3