CVE-2023-39974
Exposure of Sensitive Information vulnerability in AcyMailing Enterprise component for Joomla.
MEDIUM
AcyMailing Enterprise
Composant
Source officielle
Description
Exposure of Sensitive Information vulnerability in AcyMailing Enterprise component for Joomla. It allows unauthorized actors to get the number of subscribers in a specific list.
Sévérité
5.3
Moyenne · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 5.3 (v3.1) |
Produit et versions
- Produit
- AcyMailing Enterprise
- Type
- Composant
- Corrigée dans
- 8.7.0
- Publiée
- 17/08/2023
- Modifiée
- 17/06/2026
- CWE
- CWE-200, CWE-668
Versions concernées
- com_acymailing — 6.7.0 – 8.6.3
- acymailing — 6.7.0 – 8.7.0 (exclue)
Sources
- NVD CNA Joomla CVE-2023-39974 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC