CVE-2023-39973
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla.
MEDIUM
AcyMailing Enterprise
Composant
Source officielle
Description
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla. It allows the unauthorized removal of attachments from campaigns.
Sévérité
4.3
Moyenne · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 4.3 (v3.1) |
Produit et versions
- Produit
- AcyMailing Enterprise
- Type
- Composant
- Corrigée dans
- 8.7.0
- Publiée
- 17/08/2023
- Modifiée
- 17/06/2026
- CWE
- CWE-284
Versions concernées
- com_acymailing — 6.7.0 – 8.6.3
- acymailing — 6.7.0 – 8.7.0 (exclue)
Sources
- NVD CNA Joomla CVE-2023-39973 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC