First published: Thu Aug 17 2023(Updated: )
Improper Access Control vulnerability in AcyMailing Enterprise component for Joomla. It allows unauthorized users to create new mailing lists.
Credit: security@joomla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phlymail | >=6.7.0<8.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-39972.
The severity of CVE-2023-39972 is medium.
The affected software for CVE-2023-39972 is AcyMailing Enterprise component for Joomla.
CVE-2023-39972 allows unauthorized users to create new mailing lists.
Yes, you can find references for CVE-2023-39972 at the following URLs: [Link 1](https://extensions.joomla.org/extension/acymailing-starter/), [Link 2](https://www.acymailing.com/acymailing-release-security-%F0%9F%94%90-news-updates/).