CVE-2020-13376

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
07/08/2020
Last modified:
12/08/2020

Description

SecurEnvoy SecurMail 9.3.503 allows attackers to upload executable files and achieve OS command execution via a crafted SecurEnvoyReply cookie.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:securenvoy:securmail:9.3.503:*:*:*:*:*:*:*