Description
The Flvplayer component in TYPO3 6.2.x before 6.2.16 allows remote attackers to embed Flash videos from external domains via unspecified vectors, aka "Cross-Site Flashing."
Remediation
References
Related Vulnerabilities
WordPress Plugin Agent Storm by StormRETS Multiple Cross-Site Scripting Vulnerabilities (1.1.35)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2017-5340)
WordPress Plugin One User Avatar-User Profile Picture Unspecified Vulnerability (2.3.8)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-2354)
Apache Tomcat Deserialization of Untrusted Data Vulnerability (CVE-2025-24813)