VYPR
Critical severity9.8CISA KEVNVD Advisory· Published May 4, 2020· Updated Jun 17, 2026

CVE-2020-12641

CVE-2020-12641

Description

rcube_image.php in Roundcube Webmail before 1.4.4 allows attackers to execute arbitrary code via shell metacharacters in a configuration setting for im_convert_path or im_identify_path.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

17

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.