Vulnerabilities (CVE)

Filtered by vendor In2code Subscribe
Filtered by product Femanager
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-6292 1 In2code 1 Femanager 2025-04-12 6.4 MEDIUM N/A
The femanager extension before 1.0.9 for TYPO3 allows remote frontend users to modify or delete the records of other frontend users via unspecified vectors.
CVE-2022-44543 1 In2code 1 Femanager 2024-11-21 N/A 5.3 MEDIUM
The femanager extension before 5.5.2, 6.x before 6.3.3, and 7.x before 7.0.1 for TYPO3 allows creation of frontend users in restricted groups (if there is a usergroup field on the registration form). This occurs because the usergroup.inList protection mechanism is mishandled.
CVE-2021-36787 1 In2code 1 Femanager 2024-11-21 3.5 LOW 5.4 MEDIUM
The femanager extension before 5.5.1 and 6.x before 6.3.1 for TYPO3 allows XSS via a crafted SVG document.