Unrated severityNVD Advisory· Published Dec 22, 2009· Updated Jun 16, 2026
CVE-2009-4394
CVE-2009-4394
Description
SQL injection vulnerability in the Random Prayer 2 (ste_prayer2) extension 0.0.3 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected products
3cpe:2.3:a:fr.simon_rundell:ste_prayer2:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fr.simon_rundell:ste_prayer2:*:*:*:*:*:*:*:*range: <=0.0.3
- cpe:2.3:a:fr.simon_rundell:ste_prayer2:0.0.2:*:*:*:*:*:*:*
- Range: <=0.0.3
Patches
Vulnerability mechanics
References
1- typo3.org/teams/security/security-bulletins/typo3-sa-2009-020/nvdVendor Advisory
News mentions
0No linked articles in our index yet.