Vulnerabilities > CVE-2023-34209 - Unspecified vulnerability in Easyuse Mailhunter Ultimate 2020/2023

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
network
low complexity
easyuse

Summary

Exposure of Sensitive System Information to an Unauthorized Control Sphere in create template function in EasyUse MailHunter Ultimate 2023 and earlier allow remote authenticated users to obtain the absolute path via unencrypted VIEWSTATE parameter.

Vulnerable Configurations

Part Description Count
Application
Easyuse
3