RSS   Vulnerabilities for 'Direct mail'   RSS

2020-05-13
 
CVE-2020-12700

CWE-200
 

 
The direct_mail extension through 5.2.3 for TYPO3 allows Information Disclosure via a newsletter subscriber data Special Query.

 
 
CVE-2020-12699

CWE-601
 

 
The direct_mail extension through 5.2.3 for TYPO3 has an Open Redirect via jumpUrl.

 
 
CVE-2020-12698

CWE-200
 

 
The direct_mail extension through 5.2.3 for TYPO3 has Broken Access Control for newsletter subscriber tables.

 
 
CVE-2020-12697

CWE-770
 

 
The direct_mail extension through 5.2.3 for TYPO3 allows Denial of Service via log entries.

 


Copyright 2024, cxsecurity.com

 

Back to Top