DKD
DKD Direct Mail: vulnerabilidades y CVE
DKD Direct Mail tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2020-12700 | Media (4.3) | 0.78% | — | 13 may 2020 | The direct_mail extension through 5.2.3 for TYPO3 allows Information Disclosure via a newsletter subscriber data Special Query. |
| CVE-2020-12699 | Media (6.1) | 0.80% | — | 13 may 2020 | The direct_mail extension through 5.2.3 for TYPO3 has an Open Redirect via jumpUrl. |
| CVE-2020-12698 | Media (4.3) | 0.78% | — | 13 may 2020 | The direct_mail extension through 5.2.3 for TYPO3 has Broken Access Control for newsletter subscriber tables. |
| CVE-2020-12697 | Media (5.3) | 1.3% | — | 13 may 2020 | The direct_mail extension through 5.2.3 for TYPO3 allows Denial of Service via log entries. |
| CVE-2019-16698 | Media (4.3) | 0.69% | — | 16 oct 2019 | The direct_mail (aka Direct Mail) extension through 5.2.2 for TYPO3 has a missing access check in the backend module, allowing a user (with restricted permissions to the fe_users table) to view and export data of… |
| CVE-2013-7400 | Alta (7.5) | 1.7% | — | 29 dic 2017 | The Direct Mail (direct_mail) extension before 3.1.2 for TYPO3 allows remote attackers to obtain sensitive information by leveraging improper checking of authentication codes. |