CVE-2014-2922 | Pimcore 1.4.9/1.5.0/2.1.0 Newsletter.php getObjectByToken input validation (EDB-43886)
A vulnerability was found in Pimcore 1.4.9/1.5.0/2.1.0. It has been declared as critical. This affects the function getObjectByToken of the file Newsletter.php. Executing a manipulation can lead to improper input validation.
This vulnerability appears as CVE-2014-2922. The attack may be performed from remote. In addition, an exploit is available.