CVE-2018-20853: Medium severity mailpoet vulnerability
Published Nov 6, 2019
·Updated
An issue was discovered in the MailPoet Newsletters (aka wysija-newsletters) plugin before 2.8.2 for WordPress. The plugin is vulnerable to SPAM attacks.
Affected Software
1 affected component
MailPoet Mailpoet Newsletters Wordpress<2.8.2
Event History
Nov 6, 2019
CVE Published
via MITRE·07:17 PM
Data Sourced
via MITRE·07:17 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-20853?
CVE-2018-20853 is rated as a moderate severity vulnerability due to its potential for exploitation in SPAM attacks.
2
How do I fix CVE-2018-20853?
To fix CVE-2018-20853, you should update the MailPoet Newsletters plugin to version 2.8.2 or higher.
3
What types of attacks can CVE-2018-20853 facilitate?
CVE-2018-20853 can facilitate SPAM attacks, potentially compromising the email sending functionality of the affected WordPress site.
4
Which versions of MailPoet are affected by CVE-2018-20853?
CVE-2018-20853 affects MailPoet Newsletters plugin versions prior to 2.8.2.
5
Is there a patch available for CVE-2018-20853?
Yes, a patch is available for CVE-2018-20853 in the form of an update to the MailPoet Newsletters plugin.