Cross-site scripting (XSS) vulnerability in the Javascript and CSS Optimizer extension before 1.1.14 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
References
Link | Resource |
---|---|
http://secunia.com/advisories/53253 | Vendor Advisory |
http://typo3.org/extensions/repository/view/js_css_optimizer | Patch |
http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-002/ | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/81583 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2013-08-23T15:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2013-08-23T00:00:00
Link: CVE-2013-5570
JSON object: View
NVD Information
Status : Modified
Published: 2013-08-23T15:55:20.610
Modified: 2017-08-29T01:33:49.887
Link: CVE-2013-5570
JSON object: View
Redhat Information
No data.
CWE