CVE-2019-16682

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
16/10/2019
Last modified:
21/10/2019

Description

The url_redirect (aka URL redirect) extension through 1.2.1 for TYPO3 fails to properly sanitize user input and is susceptible to SQL Injection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:url_redirect_project:url_redirect:*:*:*:*:*:typo3:*:* 1.2.1 (including)