CVE-2020-25034

Publication date

2020-10-26 18:42:31

Family

mitre

State

PUBLISHED

Description

eMPS prior to eMPS 9.0 FireEye EX 3500 devices allows remote authenticated users to conduct SQL injection attacks via the sort, sort_by, search{URL], or search[attachment] parameter to the email search feature.