7.5
CVE-2014-6236
- EPSS 2.65%
- Veröffentlicht 11.09.2014 14:16:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Unspecified vulnerability in the LumoNet PHP Include (lumophpinclude) extension before 1.2.1 for TYPO3 allows remote attackers to execute arbitrary scripts via vectors related to extension links.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Lumonet Php Include Project ≫ Lumonet Php Include Version1.2.0 SwPlatformtypo3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.65% | 0.837 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2014-010
http://secunia.com/advisories/60873
http://typo3.org/extensions/repository/view/lumophpinclude
http://www.securityfocus.com/bid/69569
https://exchange.xforce.ibmcloud.com/vulnerabilities/95707