← Back

Kennziffer

kennziffer

5 CVEs • 4 products

Products (4)

Click to collapse
Toggle
Ke Search
ke_search
Ke Dompdf
ke_dompdf
Statistics
statistics

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kennziffer
1Ke Questionnaire
May 6, 2026
Dec 2, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The ke_questionnaire extension 2.5.2 and earlier for TYPO3 uses predictable names for the questionnaire answer forms, which makes it easier for remote attackers to obtain sensitive information via a direct request.
1Kennziffer
1Statistics
May 6, 2026
Oct 3, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Statistics (ke_stats) extension before 1.1.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, as exploited in the wild in February 2014.
1Kennziffer
1Ke Dompdf
May 6, 2026
Sep 11, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in the ke DomPDF extension before 0.0.5 for TYPO3 allows remote attackers to execute arbitrary code via unknown vectors.
1Kennziffer
1Ke Search
Apr 29, 2026
Aug 16, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Kennziffer
1Ke Search
Apr 29, 2026
Aug 16, 2013
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the Faceted Search (ke_search) extension before 1.4.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.