Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2vcm-447j-6j4j

Опубликовано: 28 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

GFI MailEssentials prior to version 21.8 is vulnerable to an XML External Entity (XXE) issue. An authenticated and remote attacker can send crafted HTTP requests to read arbitrary system files.

GFI MailEssentials prior to version 21.8 is vulnerable to an XML External Entity (XXE) issue. An authenticated and remote attacker can send crafted HTTP requests to read arbitrary system files.

EPSS

Процентиль: 21%
0.00067
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 6.5
nvd
10 месяцев назад

GFI MailEssentials prior to version 21.8 is vulnerable to an XML External Entity (XXE) issue. An authenticated and remote attacker can send crafted HTTP requests to read arbitrary system files.

EPSS

Процентиль: 21%
0.00067
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-611