logo

CVE-2010-4962 dmk/webkitpdf

Package

Manager: composer
Name: dmk/webkitpdf
Vulnerable Version: >=0 <1.1.4

Severity

Level: High

CVSS v3.1: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N/E:H/RL:U/RC:C

CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U

EPSS: 0.00841 pctl0.73871

Details

Webkit PDFs for TYPO3 allows remote attackers to execute arbitrary commands Unspecified vulnerability in the Webkit PDFs (webkitpdf) extension before 1.1.4 for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.

Metadata

Created: 2022-05-17T01:56:34Z
Modified: 2025-04-12T02:04:15Z
Source: https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-xq29-jcj7-xg86/GHSA-xq29-jcj7-xg86.json
CWE IDs: ["CWE-94"]
Alternative ID: GHSA-xq29-jcj7-xg86
Finding: F422
Auto approve: 1