PT-2010-5001 · Typo3 · Typo3 Powermail Extension
Published
2010-09-29
·
Updated
2010-09-30
·
CVE-2010-3687
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
TYPO3 powermail extension versions 1.5.3 and earlier
Description
The issue allows remote attackers to bypass validation and have an unspecified impact by injecting arbitrary values into validated fields, such as the
Email and URL fields.Recommendations
For versions 1.5.3 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Typo3 Powermail Extension