Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qgvx-mvf3-xw8r

Опубликовано: 18 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/PMailServer2 products. If this vulnerability is exploited, a user who can upload files through the product may execute an arbitrary executable file with the web server's execution privilege.

Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/PMailServer2 products. If this vulnerability is exploited, a user who can upload files through the product may execute an arbitrary executable file with the web server's execution privilege.

EPSS

Процентиль: 35%
0.00145
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 4.3
nvd
почти 2 года назад

Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/PMailServer2 products. If this vulnerability is exploited, a user who can upload files through the product may execute an arbitrary executable file with the web server's execution privilege.

EPSS

Процентиль: 35%
0.00145
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-434