MailGates and MailAudit products contain Command Injection flaw, which can be used to inject and execute system commands from the cgi parameter after attackers obtain the user’s access token.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2020-11-01T17:10:18.514022Z

Updated: 2024-09-16T23:05:21.105Z

Reserved: 2020-09-23T00:00:00

Link: CVE-2020-25849

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-01T17:15:12.200

Modified: 2020-11-13T15:39:25.493

Link: CVE-2020-25849

cve-icon Redhat

No data.