Beveiligingsadvies

CVE-2019-6800

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-06-05 18:05:02
Laatst bijgewerkt 2024-08-04 20:31:04
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

In TitanHQ SpamTitan through 7.03, a vulnerability exists in the spam rule update function. Updates are downloaded over HTTP, including scripts which are subsequently executed with root permissions. An attacker with a privileged network position is trivially able to inject arbitrary commands.