Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘ privilege via a crafted ZIP archive.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-38305 | Unrestricted upload of file with dangerous type vulnerability in create template function in EasyUse MailHunter Ultimate 2023 and earlier allows remote authenticated users to perform arbitrary system commands with ‘NT Authority\SYSTEM‘ privilege via a crafted ZIP archive. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://zuso.ai/Advisory/ZA-2023-04 |
|
History
No history.
Status: PUBLISHED
Assigner: ZUSO ART
Published:
Updated: 2024-09-13T19:52:42.498Z
Reserved: 2023-05-30T09:41:32.477Z
Link: CVE-2023-34207
Updated: 2024-08-02T16:01:54.241Z
Status : Modified
Published: 2023-10-17T04:15:11.937
Modified: 2024-11-21T08:06:46.183
Link: CVE-2023-34207
No data.
OpenCVE Enrichment
No data.
EUVD