CVE-2023-39970

Vulnérabilités

CVE-2023-39970

Unrestricted Upload of File with Dangerous Type vulnerability in AcyMailing component for Joomla.

CRITICAL AcyMailing Composant Source officielle

Unrestricted Upload of File with Dangerous Type vulnerability in AcyMailing component for Joomla. It allows remote code execution.

9.8 Critique · CVSS 3.1

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDCRITICAL 9.8 (v3.1)
Produit
AcyMailing
Type
Composant
Corrigée dans
Non précisée
Publiée
17/08/2023
Modifiée
17/06/2026
CWE
CWE-434
  • com_acymailing — 6.7.0 – 8.5.0
  • acymailing_starter — 6.7.0 – 8.5.0

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC