{"id":"GHSA-r2w2-2r2x-fpcx","summary":"TYPO3 SQL Injection vulnerability","details":"SQL injection vulnerability in the list module in TYPO3 4.2.x before 4.2.16, 4.3.x before 4.3.9, and 4.4.x before 4.4.5 allows remote authenticated users with certain permissions to execute arbitrary SQL commands via unspecified vectors.","aliases":["CVE-2010-5103"],"modified":"2025-04-12T02:57:06.825104Z","published":"2022-05-17T01:55:53Z","database_specific":{"github_reviewed":true,"github_reviewed_at":"2025-04-12T02:30:19Z","nvd_published_at":"2012-05-21T20:55:00Z","cwe_ids":["CWE-89"],"severity":"MODERATE"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2010-5103"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/64184"},{"type":"PACKAGE","url":"https://github.com/TYPO3/typo3"},{"type":"WEB","url":"https://web.archive.org/web/20120123102224/http://www.securityfocus.com/bid/45470"},{"type":"WEB","url":"https://web.archive.org/web/20120801235059/http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-sa-2010-022"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2011/01/13/2"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/05/10/7"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/05/11/3"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/05/12/5"}],"affected":[{"package":{"name":"typo3/cms","ecosystem":"Packagist","purl":"pkg:composer/typo3/cms"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.2.0"},{"fixed":"4.2.16"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-r2w2-2r2x-fpcx/GHSA-r2w2-2r2x-fpcx.json"}},{"package":{"name":"typo3/cms","ecosystem":"Packagist","purl":"pkg:composer/typo3/cms"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.3.0"},{"fixed":"4.3.9"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-r2w2-2r2x-fpcx/GHSA-r2w2-2r2x-fpcx.json"}},{"package":{"name":"typo3/cms","ecosystem":"Packagist","purl":"pkg:composer/typo3/cms"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.4.0"},{"fixed":"4.4.5"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-r2w2-2r2x-fpcx/GHSA-r2w2-2r2x-fpcx.json"}}],"schema_version":"1.9.0"}