|
|
|
|
|
|
|
| |
[DSA2008] DSA-2008-1 typo3-src |
|
| This script is (C) 2010 Tenable Network Security, Inc. |
|
|
| Family | Debian Local Security Checks |
| Nessus Plugin ID | 45008 (debian_DSA-2008.nasl) |
| Bugtraq ID |
|
| CVE ID |
|
|
| Description: |
Synopsis :
The remote host is missing the DSA-2008 security update
Description :
Several remote vulnerabilities have been discovered in the TYPO3 web
content management framework: Cross-site scripting vulnerabilities have
been discovered in both the frontend and the backend. Also, user data
could be leaked. More details can be found in the
Typo3
security advisory.
For the stable distribution (lenny), these problems have been fixed in
version 4.2.5-1+lenny3.
See also :
http://www.debian.org/security/2010/dsa-2008
Solution :
The Debian project recommends that you upgrade your typo3-src package.
Risk factor :
High
|
|
|
|
|
|