// For flags

CVE-2009-4804

 

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cross-site scripting (XSS) vulnerability in the Calendar Base (cal) extension before 1.1.1 for TYPO3, when Internet Explorer 6 is used, allows remote attackers to inject arbitrary web script or HTML via "search parameters."

Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en la extensión Calendar Base (cal) anterior a v1.1.1 para TYPO3, cuando se usa Internet Explorer 6, permite a atacantes remotos inyectar secuencias de comandos Web o HTML a través de los "parámetros seach -búsqueda-".

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-04-23 CVE Reserved
  • 2010-04-23 CVE Published
  • 2024-09-16 CVE Updated
  • 2024-09-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
<= 1.1.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version " <= 1.1.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
<= 1.1.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version " <= 1.1.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.9.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.9.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.9.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.9.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.10.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.10.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.10.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.10.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.11.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.11.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.11.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.11.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.12.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.12.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.12.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.12.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.12.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.12.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.12.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.12.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.13.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.13.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.13.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.13.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.13.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.13.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.13.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.13.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.14.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.14.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.14.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.14.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.14.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.14.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.14.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.14.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.2"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.2"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.3"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.3"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.4
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.4"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.4
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.4"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.5
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.5"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.15.5
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.15.5"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.2"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.2"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.3"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.3"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.4
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.4"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.4
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.4"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.5
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.5"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.5
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.5"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.6
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.6"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.16.6
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.16.6"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.1"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.1
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.1"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.2"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.2
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.2"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.3"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
0.17.3
Search vendor "Mario Matzulla" for product "Calendar Base" and version "0.17.3"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
1.0.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "1.0.0"
-
Affected
in Microsoft
Search vendor "Microsoft"
Internet Explorer
Search vendor "Microsoft" for product "Internet Explorer"
*-
Safe
Mario Matzulla
Search vendor "Mario Matzulla"
Calendar Base
Search vendor "Mario Matzulla" for product "Calendar Base"
1.0.0
Search vendor "Mario Matzulla" for product "Calendar Base" and version "1.0.0"
-
Affected
in Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
*-
Safe