CVE-2013-3264
05.11.2013, 20:55
The WP Ultimate Email Marketer plugin 1.1.0 and possibly earlier for Wordpress does not properly restrict access to (1) list/edit.php and (2) campaign/editCampaign.php, which allows remote attackers to modify list or campaign data.Enginsight
Vendor | Product | Version |
---|---|---|
smackcoders | wp_ultimate_email_marketer_plugin | 𝑥 ≤ 1.1.0 |
smackcoders | wp_ultimate_email_marketer_plugin | 1.0.0 |
smackcoders | wp_ultimate_email_marketer_plugin | 1.0.1 |
smackcoders | wp_ultimate_email_marketer_plugin | 1.0.2 |
smackcoders | wp_ultimate_email_marketer_plugin | 1.0.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration