Security Advisory

CVE-2020-37141

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-02-06 23:14:07
Last updated 2026-04-07 14:05:21
Assigner VulnCheck
State PUBLISHED

Description

AMSS++ version 4.31 contains a SQL injection vulnerability in the mail modules maildetail.php script through the id parameter. Attackers can manipulate the id parameter in /modules/mail/main/maildetail.php to inject malicious SQL queries and potentially access or modify database contents.