Unrated severityNVD Advisory· Published May 27, 2008· Updated Apr 23, 2026
CVE-2008-2450
CVE-2008-2450
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Statistics (aka ke_stats) extension 0.1.2 and earlier for TYPO3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
4cpe:2.3:a:inmedias:statistics:0.0.1:alpha:*:*:*:typo3:*:*+ 3 more
- cpe:2.3:a:inmedias:statistics:0.0.1:alpha:*:*:*:typo3:*:*
- cpe:2.3:a:inmedias:statistics:0.1.0:beta:*:*:*:typo3:*:*
- cpe:2.3:a:inmedias:statistics:0.1.1:beta:*:*:*:typo3:*:*
- cpe:2.3:a:inmedias:statistics:0.1.2:beta:*:*:*:typo3:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- exchange.xforce.ibmcloud.com/vulnerabilities/42366nvdThird Party AdvisoryVDB Entry
- typo3.org/teams/security/security-bulletins/typo3-20080513-4nvdBroken Link
News mentions
0No linked articles in our index yet.