PT-2019-14766 · Typo3 · Url Redirect Extension

Daniel Goerz

·

Published

2019-10-16

·

Updated

2022-05-24

·

CVE-2019-16682

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions TYPO3 url redirect extension versions through 1.2.1
Description The issue is related to the failure of the url redirect extension to properly sanitize user input, making it susceptible to SQL Injection.
Recommendations For versions through 1.2.1, update to a version that includes the fix for this issue.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-16682
GHSA-HCPV-XH8Q-F3VQ

Affected Products

Url Redirect Extension