Interspire

    Dashboard / Vendors

    Products: 10
    Vulnerabilities: 25
    Known Exploited: 0
    1
    Critical Level Threats
    14
    High Level Threats
    10
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2022-44790

    Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.

    Last Modified: Apr 23, 2025
    Published: Dec 09, 2022

    CVE-2022-40777

    Interspire Email Marketer through 6.5.0 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation, which can cause a .php file to be accessible under a /admin/temp/surveys/ URI. NOTE: this issue exists because of an incomplete fix for CVE-2018-19550.

    Last Modified: Nov 21, 2024
    Published: Oct 11, 2022

    CVE-2018-19651

    admin/functions/remote.php in Interspire Email Marketer through 6.1.6 has Server Side Request Forgery (SSRF) via a what=importurl&url= request with an http or https URL. This also allows reading local files with a file: URL.

    Last Modified: Nov 21, 2024
    Published: Nov 28, 2018

    CVE-2018-19551

    Interspire Email Marketer through 6.1.6 has SQL Injection via a checkduplicatetags tagname request to Dynamiccontenttags.php.

    Last Modified: Nov 21, 2024
    Published: Nov 26, 2018

    CVE-2018-19550

    Interspire Email Marketer through 6.1.6 allows arbitrary file upload via a surveys_submit.php "create survey and submit survey" operation, which can cause a .php file to be accessible under a admin/temp/surveys/ URI.

    Last Modified: Nov 21, 2024
    Published: Nov 26, 2018
    Items Per Page