CVE-2020-12782

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
23/06/2020
Last modified:
21/07/2021

Description

Openfind MailGates contains a Command Injection flaw, when receiving email with specific strings, malicious code in the mail attachment will be triggered and gain unauthorized access to system files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openfind:mailaudit:5.0:*:*:*:*:*:*:*
cpe:2.3:a:openfind:mailgates:5.0:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools