Security Advisory

CVE-2023-39933

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-18 00:32:49
Last updated 2024-11-07 16:51:56
Assigner jpcert
State PUBLISHED

Description

Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Softwares PMailServer/PMailServer2 products. If this vulnerability is exploited, a user who can upload files through the product may execute an arbitrary executable file with the web servers execution privilege.