ZeroHour

CVE-2022-44790

CVSS 3.1
7.5 high
EPSS
<1%p47
Published
()
Modified
Description

Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.

Vendors
interspire
Products
email marketer
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.