Логотип exploitDog
bind:CVE-2024-4298
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-4298

Количество 2

Количество 2

nvd логотип

CVE-2024-4298

почти 2 года назад

The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-8mvv-2pq8-4996

почти 2 года назад

The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-4298

The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.

CVSS3: 7.2
3%
Низкий
почти 2 года назад
github логотип
GHSA-8mvv-2pq8-4996

The email search interface of HGiga iSherlock (including MailSherlock, SpamSherock, AuditSherlock) fails to filter special characters in certain function parameters, allowing remote attackers with administrative privileges to exploit this vulnerability for Command Injection attacks, enabling execution of arbitrary system commands.

CVSS3: 7.2
3%
Низкий
почти 2 года назад

Уязвимостей на страницу