Typo3 · Typo3 Content Rating Extbase Extension · CVE-2015-1404
**Name of the Vulnerable Software and Affected Versions**
TYPO3 Content Rating Extbase extension versions 2.0.3 and earlier
**Description**
A cross-site scripting (XSS) issue allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
**Recommendations**
For versions 2.0.3 and earlier, update to a version later than 2.0.3 to resolve the issue.