CyberSec.Space Logo
Back to CVE Browser

CVE-2009-0258

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0770%
EPSS Percentile29.96th
PublishedJan 22, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

The Indexed Search Engine (indexed_search) system extension in TYPO3 4.0.0 through 4.0.9, 4.1.0 through 4.1.7, and 4.2.0 through 4.2.3 allows remote attackers to execute arbitrary commands via a crafted filename containing shell metacharacters, which is not properly handled by the command-line indexer.

Affected Platforms (CPE)

πŸ“¦
Typo3

Typo3

= 4.0
πŸ“¦
Typo3

Typo3

= 4.0.1
πŸ“¦
Typo3

Typo3

= 4.0.2
πŸ“¦
Typo3

Typo3

= 4.0.3
πŸ“¦
Typo3

Typo3

= 4.0.4
πŸ“¦
Typo3

Typo3

= 4.0.5
πŸ“¦
Typo3

Typo3

= 4.0.6
πŸ“¦
Typo3

Typo3

= 4.0.7
πŸ“¦
Typo3

Typo3

= 4.0.8
πŸ“¦
Typo3

Typo3

= 4.0.9
πŸ“¦
Typo3

Typo3

= 4.1.0
πŸ“¦
Typo3

Typo3

= 4.1.0
πŸ“¦
Typo3

Typo3

= 4.1.0
πŸ“¦
Typo3

Typo3

= 4.1.1
πŸ“¦
Typo3

Typo3

= 4.1.2
πŸ“¦
Typo3

Typo3

= 4.1.3
πŸ“¦
Typo3

Typo3

= 4.1.4
πŸ“¦
Typo3

Typo3

= 4.1.5
πŸ“¦
Typo3

Typo3

= 4.1.6
πŸ“¦
Typo3

Typo3

= 4.1.7
πŸ“¦
Typo3

Typo3

= 4.2.0
πŸ“¦
Typo3

Typo3

= 4.2.1
πŸ“¦
Typo3

Typo3

= 4.2.2
πŸ“¦
Typo3

Typo3

= 4.2.3

References & Advisories

Related Vulnerabilities