PT-2019-14766 · Typo3 · Url Redirect Extension
Daniel Goerz
·
Published
2019-10-16
·
Updated
2022-05-24
·
CVE-2019-16682
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
TYPO3 url redirect extension versions through 1.2.1
Description
The issue is related to the failure of the url redirect extension to properly sanitize user input, making it susceptible to SQL Injection.
Recommendations
For versions through 1.2.1, update to a version that includes the fix for this issue.
Fix
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Url Redirect Extension