Security Advisory

CVE-2020-36772

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-22 14:11:25
Last updated 2025-05-30 14:22:56
Assigner redhat
State PUBLISHED

Description

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.