Skip to main content

Vendor archive

kennziffer CVEs

Beta · best-effort

5 CVEs tagged to vendor kennziffer0 Critical, 3 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2014-8874

Published Dec 2, 2014

The ke_questionnaire extension 2.5.2 and earlier for TYPO3 uses predictable names for the questionnaire answer forms, which makes it easier for remote attackers to obtain sensitiv…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-6293

Published Oct 3, 2014

SQL injection vulnerability in the Statistics (ke_stats) extension before 1.1.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, as exp…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-6235

Published Sep 11, 2014

Unspecified vulnerability in the ke DomPDF extension before 0.0.5 for TYPO3 allows remote attackers to execute arbitrary code via unknown vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-5307

Published Aug 16, 2013

Cross-site scripting (XSS) vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unsp…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5302

Published Aug 16, 2013

SQL injection vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1