Description
SQL injection vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
References (3)
Core 3
Core References
Patch, Vendor Advisory x_refsource_confirm
http://typo3.org/teams/security/security-bulletins/typo3-sa-2010-019
Patch x_refsource_confirm
http://typo3.org/extensions/repository/view/powermail/1.5.4/
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/41530
Scores
EPSS
0.0105
EPSS Percentile
60.8%
Details
CWE
CWE-89
Status
published
Products (50)
alex_kellner/powermail
1.0.1
alex_kellner/powermail
1.0.2
alex_kellner/powermail
1.0.3
alex_kellner/powermail
1.0.4
alex_kellner/powermail
1.0.5
alex_kellner/powermail
1.0.6
alex_kellner/powermail
1.0.7
alex_kellner/powermail
1.0.8
alex_kellner/powermail
1.0.9
alex_kellner/powermail
1.0.10
... and 40 more
Published
Sep 24, 2010
Tracked Since
Feb 18, 2026