CVE-2023-39973
Description
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla. It allows the unauthorized removal of attachments from campaigns.
CWE
- CWE-284 — CWE-284 Improper Access Control
Affected
- acymailing.com / AcyMailing Enterprise component for Joomla — v=6.7.0-8.6.3 [affected]
CVSS
- (none)
References
- https://extensions.joomla.org/extension/acymailing-starter/ product
- https://www.acymailing.com/acymailing-release-security-%F0%9F%94%90-news-updates/ vendor-advisory
Source
cvelistV5-main/cves/2023/39xxx/CVE-2023-39973.json