← Volver a CVEs
CVE-2012-3530
N/ADescripcion
Incomplete blacklist vulnerability in the t3lib_div::quoteJSvalue API function in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to conduct cross-site scripting (XSS) attacks via certain HTML5 JavaScript events.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado9/5/2012
Ultima modificacion4/11/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
typo3:typo3
Referencias
http://osvdb.org/84772(secalert@redhat.com)
http://secunia.com/advisories/50287(secalert@redhat.com)
http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2012-004/(secalert@redhat.com)
http://www.debian.org/security/2012/dsa-2537(secalert@redhat.com)
http://www.openwall.com/lists/oss-security/2012/08/22/8(secalert@redhat.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/77794(secalert@redhat.com)
http://osvdb.org/84772(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/50287(af854a3a-2127-422b-91ae-364da2661108)
http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2012-004/(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2012/dsa-2537(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/08/22/8(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/77794(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.