GHSA-xq29-jcj7-xg86

Suggest an improvement
Source
https://github.com/advisories/GHSA-xq29-jcj7-xg86
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-xq29-jcj7-xg86/GHSA-xq29-jcj7-xg86.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-xq29-jcj7-xg86
Aliases
  • CVE-2010-4962
Published
2022-05-17T01:56:34Z
Modified
2025-04-12T02:27:09.367310Z
Severity
  • 8.1 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U CVSS Calculator
Summary
Webkit PDFs for TYPO3 allows remote attackers to execute arbitrary commands
Details

Unspecified vulnerability in the Webkit PDFs (webkitpdf) extension before 1.1.4 for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.

Database specific
{
    "github_reviewed_at": "2025-04-12T02:04:15Z",
    "nvd_published_at": "2011-10-09T10:55:00Z",
    "severity": "HIGH",
    "github_reviewed": true,
    "cwe_ids": [
        "CWE-94"
    ]
}
References

Affected packages

Packagist / dmk/webkitpdf

Package

Name
dmk/webkitpdf
Purl
pkg:composer/dmk/webkitpdf

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.1.4

Database specific

source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-xq29-jcj7-xg86/GHSA-xq29-jcj7-xg86.json"