Posted by RedTeam Pentesting GmbH on Jun 15
Advisory: SQL Injection in TYPO3 Extension Akronymmanager
An SQL injection vulnerability in the TYPO3 extension “Akronymmanager”
allows authenticated attackers to inject SQL statements and thereby read
data from the TYPO3 database.
Details
=======
Product: sb_akronymmanager
Affected Versions: <=0.5.0
Fixed Versions: 7.0.0
Vulnerability Type: SQL Injection
Security Risk: medium
Vendor URL:…