CVE-2013-6289
published 2013-10-28CVE-2013-6289: Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.81%
76.3th percentile
Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache-solr-for-typo3 | solr | >= 0 < 2.8.3 | 2.8.3 |
| ingo_renner | apache_solr | <= 2.8.2 | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
| ingo_renner | apache_solr | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
ghsa·2022-05-17
CVE-2013-6289 [MEDIUM] CWE-79 Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
OSV
Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
osv·2022-05-17
CVE-2013-6289 [MEDIUM] Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
Apache Solr for TYPO3 (solr) extension is vulnerable to Cross-site scripting (XSS)
Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/54978http://typo3.org/extensions/repository/view/solrhttp://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-009/http://www.securityfocus.com/bid/62674http://secunia.com/advisories/54978http://typo3.org/extensions/repository/view/solrhttp://typo3.org/teams/security/security-bulletins/typo3-extensions/typo3-ext-sa-2013-009/http://www.securityfocus.com/bid/62674
2013-10-28
Published