ZeroHour

CVE-2022-40741

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

Mail SQR Expert’s specific function has insufficient filtering for special characters. An unauthenticated remote attacker can exploit this vulnerability to perform arbitrary system command and disrupt service.

Vendors
softnext
Products
mail sqr expert
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.