Lucene search

K
cvelistFlexeraCVELIST:CVE-2013-3264
HistoryNov 05, 2013 - 8:00 p.m.

CVE-2013-3264

2013-11-0520:00:00
flexera
www.cve.org
3
wp ultimate email marketer
unauthorized access
list data
campaign data
remote attackers

AI Score

6.8

Confidence

Low

EPSS

0.005

Percentile

75.8%

The WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress does not properly restrict access to (1) list/edit.php and (2) campaign/editCampaign.php, which allows remote attackers to modify list or campaign data.

AI Score

6.8

Confidence

Low

EPSS

0.005

Percentile

75.8%

Related for CVELIST:CVE-2013-3264