SQL injection vulnerability in the indexed_search system extension in TYPO3 3.x, 4.0 through 4.0.7, and 4.1 through 4.1.3 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
https://exchange.xforce.ibmcloud.com/vulnerabilities/39017
http://www.vupen.com/english/advisories/2007/4205
http://www.securityfocus.com/bid/26871
http://www.debian.org/security/2007/dsa-1439
http://typo3.org/teams/security/security-bulletins/typo3-20071210-1/
http://securitytracker.com/id?1019146
http://secunia.com/advisories/28243