SQL injection vulnerability in the powermail extension 1.5.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to the "SQL selection field" and "typoscript."
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2010-0360 | TYPO3 powermail Extension Vulnerable to SQL Injection via Unspecified Vectors |
![]() |
GHSA-mgw4-gv3f-g57j | TYPO3 powermail Extension Vulnerable to SQL Injection via Unspecified Vectors |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T22:03:28.177Z
Reserved: 2010-01-15T00:00:00Z
Link: CVE-2010-0329

No data.

Status : Deferred
Published: 2010-01-15T19:30:00.707
Modified: 2025-04-09T00:30:58.490
Link: CVE-2010-0329

No data.

No data.