5

CVE-2010-3687

Unspecified vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to bypass validation have an unspecified impact by "[injecting] arbitrary values into validated fields," as demonstrated using the (1) Email and (2) URL fields.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Alex KellnerPowermail Version <= 1.5.3
   Typo3Typo3
Alex KellnerPowermail Version1.0.1
   Typo3Typo3
Alex KellnerPowermail Version1.0.2
   Typo3Typo3
Alex KellnerPowermail Version1.0.3
   Typo3Typo3
Alex KellnerPowermail Version1.0.4
   Typo3Typo3
Alex KellnerPowermail Version1.0.5
   Typo3Typo3
Alex KellnerPowermail Version1.0.6
   Typo3Typo3
Alex KellnerPowermail Version1.0.7
   Typo3Typo3
Alex KellnerPowermail Version1.0.8
   Typo3Typo3
Alex KellnerPowermail Version1.0.9
   Typo3Typo3
Alex KellnerPowermail Version1.0.10
   Typo3Typo3
Alex KellnerPowermail Version1.0.11
   Typo3Typo3
Alex KellnerPowermail Version1.0.12
   Typo3Typo3
Alex KellnerPowermail Version1.1.0
   Typo3Typo3
Alex KellnerPowermail Version1.1.1
   Typo3Typo3
Alex KellnerPowermail Version1.1.2
   Typo3Typo3
Alex KellnerPowermail Version1.1.3
   Typo3Typo3
Alex KellnerPowermail Version1.1.4
   Typo3Typo3
Alex KellnerPowermail Version1.1.5
   Typo3Typo3
Alex KellnerPowermail Version1.1.6
   Typo3Typo3
Alex KellnerPowermail Version1.1.7
   Typo3Typo3
Alex KellnerPowermail Version1.1.8
   Typo3Typo3
Alex KellnerPowermail Version1.1.9
   Typo3Typo3
Alex KellnerPowermail Version1.1.10
   Typo3Typo3
Alex KellnerPowermail Version1.2.0
   Typo3Typo3
Alex KellnerPowermail Version1.2.1
   Typo3Typo3
Alex KellnerPowermail Version1.2.2
   Typo3Typo3
Alex KellnerPowermail Version1.2.3
   Typo3Typo3
Alex KellnerPowermail Version1.2.4
   Typo3Typo3
Alex KellnerPowermail Version1.3.1
   Typo3Typo3
Alex KellnerPowermail Version1.3.2
   Typo3Typo3
Alex KellnerPowermail Version1.3.3
   Typo3Typo3
Alex KellnerPowermail Version1.3.4
   Typo3Typo3
Alex KellnerPowermail Version1.3.5
   Typo3Typo3
Alex KellnerPowermail Version1.3.6
   Typo3Typo3
Alex KellnerPowermail Version1.3.7
   Typo3Typo3
Alex KellnerPowermail Version1.3.8
   Typo3Typo3
Alex KellnerPowermail Version1.3.9
   Typo3Typo3
Alex KellnerPowermail Version1.3.10
   Typo3Typo3
Alex KellnerPowermail Version1.3.11
   Typo3Typo3
Alex KellnerPowermail Version1.3.12
   Typo3Typo3
Alex KellnerPowermail Version1.3.13
   Typo3Typo3
Alex KellnerPowermail Version1.3.14
   Typo3Typo3
Alex KellnerPowermail Version1.3.15
   Typo3Typo3
Alex KellnerPowermail Version1.3.16
   Typo3Typo3
Alex KellnerPowermail Version1.4.1
   Typo3Typo3
Alex KellnerPowermail Version1.4.2
   Typo3Typo3
Alex KellnerPowermail Version1.4.3
   Typo3Typo3
Alex KellnerPowermail Version1.4.4
   Typo3Typo3
Alex KellnerPowermail Version1.4.5
   Typo3Typo3
Alex KellnerPowermail Version1.4.6
   Typo3Typo3
Alex KellnerPowermail Version1.4.7
   Typo3Typo3
Alex KellnerPowermail Version1.4.8
   Typo3Typo3
Alex KellnerPowermail Version1.4.9
   Typo3Typo3
Alex KellnerPowermail Version1.4.10
   Typo3Typo3
Alex KellnerPowermail Version1.4.11
   Typo3Typo3
Alex KellnerPowermail Version1.4.12
   Typo3Typo3
Alex KellnerPowermail Version1.4.13
   Typo3Typo3
Alex KellnerPowermail Version1.4.14
   Typo3Typo3
Alex KellnerPowermail Version1.4.15
   Typo3Typo3
Alex KellnerPowermail Version1.4.16
   Typo3Typo3
Alex KellnerPowermail Version1.4.17
   Typo3Typo3
Alex KellnerPowermail Version1.4.18
   Typo3Typo3
Alex KellnerPowermail Version1.5.0
   Typo3Typo3
Alex KellnerPowermail Version1.5.1
   Typo3Typo3
Alex KellnerPowermail Version1.5.2
   Typo3Typo3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.23% 0.651
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/41530
Vendor Advisory
http://typo3.org/teams/security/security-bulletins/typo3-sa-2010-019
Patch
Vendor Advisory
http://typo3.org/extensions/repository/view/powermail/1.5.4