Vulnerability Database

290,206

Total vulnerabilities in the database

CVE-2015-8760

The Flvplayer component in TYPO3 6.2.x before 6.2.16 allows remote attackers to embed Flash videos from external domains via unspecified vectors, aka "Cross-Site Flashing."

  • Published: Jan 8, 2016
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-8760
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.1
  • AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N

CWEs:

Software From Fixed in
typo3 / typo3 6.2.1 6.2.1.x
typo3 / typo3 6.2.8 6.2.8.x
typo3 / typo3 6.2.0-beta1 6.2.0-beta1.x
typo3 / typo3 6.2.4 6.2.4.x
typo3 / typo3 6.2.5 6.2.5.x
typo3 / typo3 6.2.11 6.2.11.x
typo3 / typo3 6.2.15 6.2.15.x
typo3 / typo3 6.2.14 6.2.14.x
typo3 / typo3 6.2 6.2.x
typo3 / typo3 6.2.3 6.2.3.x
typo3 / typo3 6.2.2 6.2.2.x
typo3 / typo3 6.2.0-beta6 6.2.0-beta6.x
typo3 / typo3 6.2.0-alpha2 6.2.0-alpha2.x
typo3 / typo3 6.2.0-beta7 6.2.0-beta7.x
typo3 / typo3 6.2.0-rc2 6.2.0-rc2.x
typo3 / typo3 6.2.0-beta3 6.2.0-beta3.x
typo3 / typo3 6.2.0-alpha1 6.2.0-alpha1.x
typo3 / typo3 6.2.0-beta5 6.2.0-beta5.x
typo3 / typo3 6.2.12 6.2.12.x
typo3 / typo3 6.2.10-rc1 6.2.10-rc1.x
typo3 / typo3 6.2.6 6.2.6.x
typo3 / typo3 6.2.13 6.2.13.x
typo3 / typo3 6.2.9 6.2.9.x
typo3 / typo3 6.2.0-beta4 6.2.0-beta4.x
typo3 / typo3 6.2.7 6.2.7.x
typo3 / typo3 6.2.0-rc1 6.2.0-rc1.x
typo3 / typo3 6.2.10 6.2.10.x
typo3 / typo3 6.2.0-alpha3 6.2.0-alpha3.x
typo3 / typo3 6.2.0-beta2 6.2.0-beta2.x