Unrated severityNVD Advisory· Published Jun 27, 2013· Updated Apr 29, 2026
CVE-2012-6577
CVE-2012-6577
Description
SQL injection vulnerability in the Formhandler extension before 1.4.1 for TYPO3 allows remote authenticated users with certain permissions to execute arbitrary SQL commands via unspecified vectors.
Affected products
19cpe:2.3:a:typoheads:formhandler:*:*:*:*:*:*:*:*+ 18 more
- cpe:2.3:a:typoheads:formhandler:*:*:*:*:*:*:*:*range: <=1.4.0
- cpe:2.3:a:typoheads:formhandler:0.9.10:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.11:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.12:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.13:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.14:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.15:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.16:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.3:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.4:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.5:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.6:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.7:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.8:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:0.9.9:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:1.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:1.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:1.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:typoheads:formhandler:1.3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.