Security Advisory
CVE-2023-27507
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the products file upload function and server save option are enabled, a remote attacker may save an arbitrary file on the server and execute it.