Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8f68-68mm-w72g

Опубликовано: 15 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function. A remote attacker authenticated as a localhost can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.

Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function. A remote attacker authenticated as a localhost can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.

EPSS

Процентиль: 53%
0.00306
Низкий

7.4 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.4
nvd
около 2 лет назад

Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function. A remote attacker authenticated as a localhost can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.

EPSS

Процентиль: 53%
0.00306
Низкий

7.4 High

CVSS3

Дефекты

CWE-78