VYPR

ke_questionnaire

by TYPO3

CVEs (3)

  • CVE-2014-8874Dec 2, 2014
    risk 0.00cvss epss 0.01

    The ke_questionnaire extension 2.5.2 and earlier for TYPO3 uses predictable names for the questionnaire answer forms, which makes it easier for remote attackers to obtain sensitive information via a direct request.

  • CVE-2010-4957Oct 9, 2011
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2010-4956Oct 9, 2011
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in the Questionnaire (ke_questionnaire) extension before 2.2.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.