CVE-2010-0325
https://notcve.org/view.php?id=CVE-2010-0325
Unspecified vulnerability in the SB Folderdownload (sb_folderdownload) extension 0.2.2 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors. Vulnerabilidad no especificada en la extensión de TYPO3 "SB Folderdownload" (sb_folderdownload) v0.2.2 y anteriores permite a atacantes remotos obtener información sensible a través de vectores de ataque desconocidos. • http://typo3.org/extensions/repository/view/sb_folderdownload/0.2.3 http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021 •
CVE-2008-6693
https://notcve.org/view.php?id=CVE-2008-6693
SQL injection vulnerability in Download system (sb_downloader) extension 0.1.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. Vulnerabilidad de inyección SQL en la extensión Download system (sb_downloader) v0.1.4 y anteriores para TYPO3, permite a atacantes remotos ejecutar comandos de su elección a través de vectores no especificados. • http://osvdb.org/46390 http://secunia.com/advisories/30737 http://typo3.org/teams/security/security-bulletins/typo3-20080619-1 http://www.securityfocus.com/bid/29825 https://exchange.xforce.ibmcloud.com/vulnerabilities/43208 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •