Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://zuso.ai/Advisory/ZA-2023-06 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: ZUSO ART
Published: 2023-10-17T04:00:28.128Z
Updated: 2024-09-13T18:05:39.995Z
Reserved: 2023-05-30T09:41:32.477Z
Link: CVE-2023-34209
Vulnrichment
Updated: 2024-08-02T16:01:54.279Z
NVD
Status : Modified
Published: 2023-10-17T05:15:50.207
Modified: 2024-11-21T08:06:46.460
Link: CVE-2023-34209
Redhat
No data.