Openfind Mail2000 does not properly filter parameters of specific CGI. Remote attackers with regular privileges can exploit this vulnerability to execute arbitrary system commands on the remote server.
Metrics
Affected Vendors & Products
Fixes
Solution
Update Mail2000 V8.0 to Patch 34 or later version.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-7819-9661a-1.html |
![]() ![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-08-01T21:11:12.528Z
Reserved: 2024-05-27T03:06:04.074Z
Link: CVE-2024-5400

Updated: 2024-08-01T21:11:12.528Z

Status : Awaiting Analysis
Published: 2024-05-27T06:15:10.620
Modified: 2024-11-21T09:47:34.830
Link: CVE-2024-5400

No data.

Updated: 2025-07-12T22:09:57Z