← Back

Acyba

acyba

5 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Acymailing
acymailing
Acysms
acysms

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Acyba
1Acymailing Starter
Jun 17, 2026
Aug 17, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Unrestricted Upload of File with Dangerous Type vulnerability in AcyMailing component for Joomla. It allows remote code execution.
1Acyba
1Acymailing
Jun 17, 2026
Mar 24, 2020
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
Acyba AcyMailing before 6.9.2 mishandles file uploads by admins.
1Acyba
1Acymailing
Nov 21, 2024
Mar 9, 2020
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
SQL Injection exists in AcyMailing Joomla Component before 4.9.5 via exportgeolocorder in a geolocation_longitude request to index.php.
1Acyba
1Acymailing
Jun 17, 2026
Mar 28, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcyMailing extension before 5.9.6 for Joomla! via a value that is mishandled in a CSV export.
1Acyba
1Acysms
Jun 17, 2026
Mar 28, 2018
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in the export feature in the Acyba AcySMS extension before 3.5.1 for Joomla! via a value that is mishandled in a CSV export.