Openfind Mail2000 does not properly filter parameters of specific CGI. Remote attackers with regular privileges can exploit this vulnerability to execute arbitrary system commands on the remote server.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-7819-9661a-1.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2024-05-27T05:36:44.672Z
Updated: 2024-08-01T21:11:12.528Z
Reserved: 2024-05-27T03:06:04.074Z
Link: CVE-2024-5400
Vulnrichment
Updated: 2024-08-01T21:11:12.528Z
NVD
Status : Awaiting Analysis
Published: 2024-05-27T06:15:10.620
Modified: 2024-05-28T12:39:28.377
Link: CVE-2024-5400
Redhat
No data.