Vulnerabilities (CVE)

Filtered by vendor Interspire Subscribe
Total 25 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-19553 1 Interspire 1 Email Marketer 2024-11-21 6.5 MEDIUM 8.8 HIGH
Interspire Email Marketer through 6.1.6 has SQL Injection via an updateblock sortorder request to Dynamiccontenttags.php
CVE-2018-19552 1 Interspire 1 Email Marketer 2024-11-21 6.5 MEDIUM 8.8 HIGH
Interspire Email Marketer through 6.1.6 has SQL Injection via a deleteblock blockid[] request to Dynamiccontenttags.php.
CVE-2018-19551 1 Interspire 1 Email Marketer 2024-11-21 6.5 MEDIUM 8.8 HIGH
Interspire Email Marketer through 6.1.6 has SQL Injection via a checkduplicatetags tagname request to Dynamiccontenttags.php.
CVE-2018-19550 1 Interspire 1 Email Marketer 2024-11-21 6.5 MEDIUM 8.8 HIGH
Interspire Email Marketer through 6.1.6 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation, which can cause a .php file to be accessible under a admin/temp/surveys/ URI.
CVE-2018-19549 1 Interspire 1 Email Marketer 2024-11-21 6.5 MEDIUM 8.8 HIGH
Interspire Email Marketer through 6.1.6 has SQL Injection via a tagids Delete action to Dynamiccontenttags.php.