7.5
CVSSv2

CVE-2014-3947

Published: 03/10/2014 Updated: 10/10/2014
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload vulnerability in the powermail extension prior to 1.6.11 and 2.x prior to 2.0.14 for TYPO3 allows remote malicious users to execute arbitrary code by uploading a file with a crafted extension, then accessing it via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

alex kellner powermail 2.0.5

alex kellner powermail 2.0.6

alex kellner powermail

alex kellner powermail 2.0.0

alex kellner powermail 2.0.8

alex kellner powermail 2.0.7

alex kellner powermail 2.0.1

alex kellner powermail 2.0.2

alex kellner powermail 2.0.9

alex kellner powermail 2.0.10

alex kellner powermail 2.0.3

alex kellner powermail 2.0.4