TYPO3 Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2010-3668 - Vulnerability Database
TYPO3 Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2010-3668
High
Reference:
CVE-2010-3668
Title:
TYPO3 Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
Overview:
TYPO3 before 4.1.14 4.2.x before 4.2.13 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Header Injection in the secure download feature jumpurl.