First published: Thu Aug 17 2023(Updated: )
Unrestricted Upload of File with Dangerous Type vulnerability in AcyMailing component for Joomla. It allows remote code execution.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
AcyMailing | >=6.7.0<=8.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39970 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-2023-39970, update the AcyMailing component for Joomla to a version later than 8.5.0.
CVE-2023-39970 affects the AcyMailing component for Joomla versions 6.7.0 through 8.5.0.
CVE-2023-39970 is classified as an Unrestricted Upload of File with Dangerous Type vulnerability.
Yes, CVE-2023-39970 can lead to remote code execution, potentially resulting in data breaches.