Description
Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to inject arbitrary web script or HTML via the admin panel.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2015-4888 Vulnerability (CVE-2015-4888)
WordPress Plugin Amelia-Events & Appointments Booking Calendar Multiple Vulnerabilities (1.0.45)
Ruby Use of Externally-Controlled Format String Vulnerability (CVE-2017-0898)
Drupal Other Vulnerability (CVE-2006-2833)
Apache Tomcat Use of Incorrectly-Resolved Name or Reference Vulnerability (CVE-2021-24122)