Security Advisory

CVE-2014-3947

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-10-03 14:00:00
Last updated 2024-08-06 10:57:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Unrestricted file upload vulnerability in the powermail extension before 1.6.11 and 2.x before 2.0.14 for TYPO3 allows remote attackers to execute arbitrary code by uploading a file with a crafted extension, then accessing it via unspecified vectors.