Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where the IIS user had permission to access. That action, could lead an attacker to store arbitrary code on that files and execute RCE commands.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-01-13T00:00:00

Updated: 2024-08-03T13:03:45.370Z

Reserved: 2022-10-03T00:00:00

Link: CVE-2022-42136

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-01-13T21:15:15.523

Modified: 2023-01-23T18:27:50.980

Link: CVE-2022-42136

cve-icon Redhat

No data.