CVE-2023-39971

Improper Neutralization of Input During Web Page Generation vulnerability in AcyMailing Enterprise component for Joomla allows XSS. This issue affects AcyMailing Enterprise component for Joomla: 6.7.0-8.6.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:acymailing:acymailing:*:*:*:*:enterprise:joomla\!:*:*

History

21 Nov 2024, 08:16

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de neutralización inadecuada de la entrada durante la generación de páginas web en el componente AcyMailing Enterprise para Joomla permite Cross-Site Scripting (XSS). Este problema afecta al componente AcyMailing Enterprise para Joomla: 6.7.0-8.6.3.
References () https://extensions.joomla.org/extension/acymailing-starter/ - Product () https://extensions.joomla.org/extension/acymailing-starter/ - Product
References () https://www.acymailing.com/acymailing-release-security-%F0%9F%94%90-news-updates/ - Release Notes, Vendor Advisory () https://www.acymailing.com/acymailing-release-security-%F0%9F%94%90-news-updates/ - Release Notes, Vendor Advisory

02 Dec 2023, 01:15

Type Values Removed Values Added
Summary Improper Neutralization of Input During Web Page Generation vulnerability in AcyMailing Enterprise component for Joomla allows XSS. This issue affects AcyMailing Enterprise component for Joomla: 6.7.0-8.6.3. Improper Neutralization of Input During Web Page Generation vulnerability in AcyMailing Enterprise component for Joomla allows XSS. This issue affects AcyMailing Enterprise component for Joomla: 6.7.0-8.6.3.

Information

Published : 2023-08-17 21:15

Updated : 2024-11-21 08:16


NVD link : CVE-2023-39971

Mitre link : CVE-2023-39971

CVE.ORG link : CVE-2023-39971


JSON object : View

Products Affected

acymailing

  • acymailing
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')