CVE-2016-4056

Source
https://cve.org/CVERecord?id=CVE-2016-4056
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-4056.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2016-4056
Aliases
Published
2017-01-23T21:59:01.377Z
Modified
2026-08-07T11:47:43.324231712Z
Severity
  • 6.1 (Medium) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

Cross-site scripting (XSS) vulnerability in the Backend component in TYPO3 6.2.x before 6.2.19 allows remote attackers to inject arbitrary web script or HTML via the module parameter when creating a bookmark.

Database specific
{
    "unresolved_ranges": [
        {
            "vendor_product": "typo3:typo3",
            "extracted_events": [
                {
                    "introduced": "6.2"
                },
                {
                    "last_affected": "6.2"
                },
                {
                    "introduced": "6.2"
                },
                {
                    "last_affected": "6.2"
                }
            ],
            "source": "CPE_STRING",
            "cpes": [
                "cpe:2.3:a:typo3:typo3:6.2:*:*:*:*:*:*:*"
            ]
        }
    ]
}
References

Affected packages

Git / github.com/benjaminkott/bootstrap_package

Affected ranges

Type
GIT
Repo
https://github.com/benjaminkott/bootstrap_package
Events
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "6.2.4"
        },
        {
            "last_affected": "6.2.4"
        },
        {
            "introduced": "6.2.5"
        },
        {
            "last_affected": "6.2.5"
        },
        {
            "introduced": "6.2.6"
        },
        {
            "last_affected": "6.2.6"
        },
        {
            "introduced": "6.2.7"
        },
        {
            "last_affected": "6.2.7"
        },
        {
            "introduced": "6.2.8"
        },
        {
            "last_affected": "6.2.8"
        },
        {
            "introduced": "6.2.9"
        },
        {
            "last_affected": "6.2.9"
        },
        {
            "introduced": "6.2.10"
        },
        {
            "last_affected": "6.2.10"
        },
        {
            "introduced": "6.2.11"
        },
        {
            "last_affected": "6.2.11"
        },
        {
            "introduced": "6.2.12"
        },
        {
            "last_affected": "6.2.12"
        },
        {
            "introduced": "6.2.13"
        },
        {
            "last_affected": "6.2.13"
        },
        {
            "introduced": "6.2.14"
        },
        {
            "last_affected": "6.2.14"
        },
        {
            "introduced": "6.2.15"
        },
        {
            "last_affected": "6.2.15"
        },
        {
            "introduced": "6.2.16"
        },
        {
            "last_affected": "6.2.16"
        },
        {
            "introduced": "6.2.17"
        },
        {
            "last_affected": "6.2.17"
        }
    ],
    "source": "CPE_STRING",
    "cpe": [
        "cpe:2.3:a:typo3:typo3:6.2.4:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.5:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.6:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.7:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.8:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.9:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.10:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.11:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.12:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.13:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.14:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.15:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.16:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.17:*:*:*:*:*:*:*"
    ]
}

Affected versions

6.*
6.2.10
6.2.11
6.2.12
6.2.13
6.2.14
6.2.15
6.2.16
6.2.17
6.2.4
6.2.5
6.2.6
6.2.7
6.2.8
6.2.9
v6.*
v6.2.10
v6.2.11
v6.2.12
v6.2.13
v6.2.14
v6.2.15
v6.2.16
v6.2.4
v6.2.5
v6.2.6
v6.2.7
v6.2.8
v6.2.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-4056.json"

Git / github.com/typo3/typo3

Affected ranges

Type
GIT
Repo
https://github.com/typo3/typo3
Events
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "6.2"
        },
        {
            "last_affected": "6.2"
        },
        {
            "introduced": "6.2.0-alpha1"
        },
        {
            "last_affected": "6.2.0-alpha1"
        },
        {
            "introduced": "6.2.0-alpha2"
        },
        {
            "last_affected": "6.2.0-alpha2"
        },
        {
            "introduced": "6.2.0-alpha3"
        },
        {
            "last_affected": "6.2.0-alpha3"
        },
        {
            "introduced": "6.2.0-beta1"
        },
        {
            "last_affected": "6.2.0-beta1"
        },
        {
            "introduced": "6.2.0-beta2"
        },
        {
            "last_affected": "6.2.0-beta2"
        },
        {
            "introduced": "6.2.0-beta3"
        },
        {
            "last_affected": "6.2.0-beta3"
        },
        {
            "introduced": "6.2.0-beta4"
        },
        {
            "last_affected": "6.2.0-beta4"
        },
        {
            "introduced": "6.2.0-beta5"
        },
        {
            "last_affected": "6.2.0-beta5"
        },
        {
            "introduced": "6.2.0-beta6"
        },
        {
            "last_affected": "6.2.0-beta6"
        },
        {
            "introduced": "6.2.0-beta7"
        },
        {
            "last_affected": "6.2.0-beta7"
        },
        {
            "introduced": "6.2.0-rc1"
        },
        {
            "last_affected": "6.2.0-rc1"
        },
        {
            "introduced": "6.2.0-rc2"
        },
        {
            "last_affected": "6.2.0-rc2"
        },
        {
            "introduced": "6.2.1"
        },
        {
            "last_affected": "6.2.1"
        },
        {
            "introduced": "6.2.2"
        },
        {
            "last_affected": "6.2.2"
        },
        {
            "introduced": "6.2.3"
        },
        {
            "last_affected": "6.2.3"
        },
        {
            "introduced": "6.2.4"
        },
        {
            "last_affected": "6.2.4"
        },
        {
            "introduced": "6.2.5"
        },
        {
            "last_affected": "6.2.5"
        },
        {
            "introduced": "6.2.6"
        },
        {
            "last_affected": "6.2.6"
        },
        {
            "introduced": "6.2.7"
        },
        {
            "last_affected": "6.2.7"
        },
        {
            "introduced": "6.2.8"
        },
        {
            "last_affected": "6.2.8"
        },
        {
            "introduced": "6.2.9"
        },
        {
            "last_affected": "6.2.9"
        },
        {
            "introduced": "6.2.10"
        },
        {
            "last_affected": "6.2.10"
        },
        {
            "introduced": "6.2.10-rc1"
        },
        {
            "last_affected": "6.2.10-rc1"
        },
        {
            "introduced": "6.2.11"
        },
        {
            "last_affected": "6.2.11"
        },
        {
            "introduced": "6.2.12"
        },
        {
            "last_affected": "6.2.12"
        },
        {
            "introduced": "6.2.13"
        },
        {
            "last_affected": "6.2.13"
        },
        {
            "introduced": "6.2.14"
        },
        {
            "last_affected": "6.2.14"
        },
        {
            "introduced": "6.2.15"
        },
        {
            "last_affected": "6.2.15"
        },
        {
            "introduced": "6.2.16"
        },
        {
            "last_affected": "6.2.16"
        },
        {
            "introduced": "6.2.17"
        },
        {
            "last_affected": "6.2.17"
        },
        {
            "introduced": "6.2.18"
        },
        {
            "last_affected": "6.2.18"
        }
    ],
    "cpe": [
        "cpe:2.3:a:typo3:typo3:6.2:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:alpha1:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:alpha2:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:alpha3:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta1:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta2:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta3:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta4:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta5:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta6:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:beta7:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:rc1:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.0:rc2:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.1:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.2:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.3:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.4:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.5:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.6:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.7:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.8:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.9:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.10:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.10:rc1:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.11:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.12:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.13:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.14:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.15:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.16:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.17:*:*:*:*:*:*:*",
        "cpe:2.3:a:typo3:typo3:6.2.18:*:*:*:*:*:*:*"
    ],
    "source": "CPE_STRING"
}

Affected versions

6.*
6.2
6.2.0
6.2.0-alpha1
6.2.0-alpha2
6.2.0-alpha3
6.2.0-beta1
6.2.0-beta2
6.2.0-beta3
6.2.0-beta4
6.2.0-beta5
6.2.0-beta6
6.2.0-beta7
6.2.0-rc1
6.2.0-rc2
6.2.1
6.2.10
6.2.10-rc1
6.2.11
6.2.12
6.2.13
6.2.14
6.2.15
6.2.16
6.2.17
6.2.18
6.2.2
6.2.3
6.2.4
6.2.5
6.2.6
6.2.7
6.2.8
6.2.9
Other
TYPO3_6-2-0
TYPO3_6-2-1
TYPO3_6-2-10
TYPO3_6-2-10rc1
TYPO3_6-2-11
TYPO3_6-2-12
TYPO3_6-2-13
TYPO3_6-2-14
TYPO3_6-2-15
TYPO3_6-2-16
TYPO3_6-2-17
TYPO3_6-2-18
TYPO3_6-2-2
TYPO3_6-2-3
TYPO3_6-2-4
TYPO3_6-2-5
TYPO3_6-2-6
TYPO3_6-2-7
TYPO3_6-2-8
TYPO3_6-2-9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-4056.json"