CVE-2014-6233
https://notcve.org/view.php?id=CVE-2014-6233
SQL injection vulnerability in the Flat Manager (flatmgr) extension before 2.7.10 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. Vulnerabilidad de inyección SQL en la extensión Flat Manager (flatmgr) anterior a 2.7.10 para TYPO3 permite a atacantes remotos ejecutar comandos SQL arbitrarios a través de vectores no especificados. • http://secunia.com/advisories/60876 http://typo3.org/extensions/repository/view/flatmgr http://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2014-010 http://www.securityfocus.com/bid/69561 https://exchange.xforce.ibmcloud.com/vulnerabilities/95703 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2009-4802
https://notcve.org/view.php?id=CVE-2009-4802
SQL injection vulnerability in the Flat Manager (flatmgr) extension before 1.9.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. Vulnerabilidad de inyección SQL en la extensión Flat Manager (flatmgr) anterior a v1.9.16 de TYPO3 permite a atacantes remotos ejecutar comandos SQL de su elección mediante vectores no especificados. • http://secunia.com/advisories/34158 http://typo3.org/extensions/repository/view/flatmgr/1.9.16 http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-003 http://www.securityfocus.com/bid/33998 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •