Powermail
In2code · 4 CVEs
CVE-2024-47047
MEDIUM
An issue was discovered in the powermail extension through 12.4.0 for TYPO3. It fails to validate the mail parameter of…
Sep 17, 2024
CVE-2024-45233
MEDIUM
An issue was discovered in powermail extension through 12.3.5 for TYPO3. Several actions in the OutputController can di…
Aug 28, 2024
CVE-2024-45232
MEDIUM
An issue was discovered in powermail extension through 12.3.5 for TYPO3. It fails to validate the mail parameter of the…
Aug 28, 2024
CVE-2008-2182
MEDIUM
Cross-site scripting (XSS) vulnerability in the powermail extension before 1.1.10 for TYPO3 allows remote attackers to…
May 13, 2008
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-47047 | An issue was discovered in the powermail extension through 12.4.0 for TYPO3. It fails to validate the mail parameter of the createAction, resulting in Insecure… | MEDIUM | 0.48% | Sep 17, 2024 |
| CVE-2024-45233 | An issue was discovered in powermail extension through 12.3.5 for TYPO3. Several actions in the OutputController can directly be called, due to missing or insu… | MEDIUM | 0.38% | Aug 28, 2024 |
| CVE-2024-45232 | An issue was discovered in powermail extension through 12.3.5 for TYPO3. It fails to validate the mail parameter of the confirmationAction, resulting in Insecu… | MEDIUM | 0.30% | Aug 28, 2024 |
| CVE-2008-2182 | Cross-site scripting (XSS) vulnerability in the powermail extension before 1.1.10 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via… | MEDIUM | 1.29% | May 13, 2008 |
Showing 1 to 4 of 4 CVEs