ZeroHour

CVE-2024-5400

CVSS 3.1
8.8 high
EPSS
<1%p46
Published
()
Modified
Description

Openfind Mail2000 does not properly filter parameters of specific CGI. Remote attackers with regular privileges can exploit this vulnerability to execute arbitrary system commands on the remote server.

Vendors
openfind
Products
mail2000
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.