// For flags

CVE-2012-1608

 

Severity Score

6.1
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The t3lib_div::RemoveXSS API method in TYPO3 4.4.0 through 4.4.13, 4.5.0 through 4.5.13, 4.6.0 through 4.6.6, 4.7, and 6.0 allows remote attackers to bypass the cross-site scripting (XSS) protection mechanism and inject arbitrary web script or HTML via non printable characters.

El t3lib_div::RemoveXSS API método en TYPO3 v4.4.0 a través de v4.4.13, v4.5.0 a través de v4.5.13, v4.6.0 a través de v4.6.6, 4.7, y 6.0, permite a atacantes remotos evitar la ejecución de comandos en sitios cruzados (XSS) mecanismo de protección e inyectar secuencias de comandos web o HTML a través de caracteres no imprimibles.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-03-12 CVE Reserved
  • 2012-09-04 CVE Published
  • 2024-09-17 CVE Updated
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.0
Search vendor "Typo3" for product "Typo3" and version "4.4.0"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.1
Search vendor "Typo3" for product "Typo3" and version "4.4.1"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.2
Search vendor "Typo3" for product "Typo3" and version "4.4.2"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.3
Search vendor "Typo3" for product "Typo3" and version "4.4.3"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.4
Search vendor "Typo3" for product "Typo3" and version "4.4.4"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.5
Search vendor "Typo3" for product "Typo3" and version "4.4.5"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.6
Search vendor "Typo3" for product "Typo3" and version "4.4.6"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.7
Search vendor "Typo3" for product "Typo3" and version "4.4.7"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.8
Search vendor "Typo3" for product "Typo3" and version "4.4.8"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.9
Search vendor "Typo3" for product "Typo3" and version "4.4.9"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.10
Search vendor "Typo3" for product "Typo3" and version "4.4.10"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.11
Search vendor "Typo3" for product "Typo3" and version "4.4.11"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.12
Search vendor "Typo3" for product "Typo3" and version "4.4.12"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.4.13
Search vendor "Typo3" for product "Typo3" and version "4.4.13"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.0
Search vendor "Typo3" for product "Typo3" and version "4.5.0"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.1
Search vendor "Typo3" for product "Typo3" and version "4.5.1"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.2
Search vendor "Typo3" for product "Typo3" and version "4.5.2"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.3
Search vendor "Typo3" for product "Typo3" and version "4.5.3"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.4
Search vendor "Typo3" for product "Typo3" and version "4.5.4"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.5
Search vendor "Typo3" for product "Typo3" and version "4.5.5"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.6
Search vendor "Typo3" for product "Typo3" and version "4.5.6"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.7
Search vendor "Typo3" for product "Typo3" and version "4.5.7"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.8
Search vendor "Typo3" for product "Typo3" and version "4.5.8"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.9
Search vendor "Typo3" for product "Typo3" and version "4.5.9"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.10
Search vendor "Typo3" for product "Typo3" and version "4.5.10"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.11
Search vendor "Typo3" for product "Typo3" and version "4.5.11"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.12
Search vendor "Typo3" for product "Typo3" and version "4.5.12"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.5.13
Search vendor "Typo3" for product "Typo3" and version "4.5.13"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.0
Search vendor "Typo3" for product "Typo3" and version "4.6.0"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.1
Search vendor "Typo3" for product "Typo3" and version "4.6.1"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.2
Search vendor "Typo3" for product "Typo3" and version "4.6.2"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.3
Search vendor "Typo3" for product "Typo3" and version "4.6.3"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.4
Search vendor "Typo3" for product "Typo3" and version "4.6.4"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.5
Search vendor "Typo3" for product "Typo3" and version "4.6.5"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.6.6
Search vendor "Typo3" for product "Typo3" and version "4.6.6"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
4.7
Search vendor "Typo3" for product "Typo3" and version "4.7"
-
Affected
Typo3
Search vendor "Typo3"
Typo3
Search vendor "Typo3" for product "Typo3"
6.0
Search vendor "Typo3" for product "Typo3" and version "6.0"
-
Affected