Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38307 | Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://zuso.ai/Advisory/ZA-2023-06 |
|
History
No history.
Status: PUBLISHED
Assigner: ZUSO ART
Published:
Updated: 2024-09-13T18:05:39.995Z
Reserved: 2023-05-30T09:41:32.477Z
Link: CVE-2023-34209
Updated: 2024-08-02T16:01:54.279Z
Status : Modified
Published: 2023-10-17T05:15:50.207
Modified: 2024-11-21T08:06:46.460
Link: CVE-2023-34209
No data.
OpenCVE Enrichment
No data.
EUVD