Beveiligingsadvies

CVE-2024-28441

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-22 00:00:00
Laatst bijgewerkt 2024-08-22 17:55:05
Toegewezen door mitre
CVSS-score 9.8
Status PUBLISHED

Beschrijving

File Upload vulnerability in magicflue v.7.0 and before allows a remote attacker to execute arbitrary code via a crafted request to the messageid parameter of the mail/mailupdate.jsp endpoint.