CVE-2023-39972
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla.
MEDIUM
AcyMailing Enterprise
Composant
Source officielle
Description
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla. It allows unauthorized users to create new mailing lists.
Sévérité
4.3
Moyenne · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 4.3 (v3.1) |
Produit et versions
- Produit
- AcyMailing Enterprise
- Type
- Composant
- Corrigée dans
- 8.7.0
- Publiée
- 17/08/2023
- Modifiée
- 17/06/2026
- CWE
- CWE-284
Versions concernées
- com_acymailing — 6.7.0 – 8.6.3
- acymailing — 6.7.0 – 8.7.0 (exclue)
Sources
- NVD CNA Joomla CVE-2023-39972 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC