Skip to main content

Vendor archive

alex_kellner CVEs

Beta · best-effort

9 CVEs tagged to vendor alex_kellner0 Critical, 4 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2014-6288

Published Oct 3, 2014

The powermail extension 2.x before 2.0.11 for TYPO3 allows remote attackers to bypass the CAPTCHA protection mechanism via unspecified vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3947

Published Oct 3, 2014

Unrestricted file upload vulnerability in the powermail extension before 1.6.11 and 2.x before 2.0.14 for TYPO3 allows remote attackers to execute arbitrary code by uploading a fi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3948

Published Jun 4, 2014

Cross-site scripting (XSS) vulnerability in the HTML export wizard in the backend module in the powermail extension before 1.6.11 for TYPO3 allows remote attackers to inject arbit…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5889

Published Nov 17, 2012

Cross-site scripting (XSS) vulnerability in the powermail extension before 1.6.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4892

Published Oct 7, 2011

Cross-site scripting (XSS) vulnerability in the powermail extension before 1.5.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3687

Published Sep 29, 2010

Unspecified vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to bypass validation have an unspecified impact by "[injecting] arbitrary…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3605

Published Sep 24, 2010

Cross-site scripting (XSS) vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vect…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3604

Published Sep 24, 2010

SQL injection vulnerability in the powermail extension 1.5.3 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0329

Published Jan 15, 2010

SQL injection vulnerability in the powermail extension 1.5.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to the…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1