Unrated severityNVD Advisory· Published Jul 29, 2024· Updated Aug 1, 2024
Softnext Mail SQR Expert and Mail Archiving Expert - OS Command Injection
CVE-2024-5670
Description
The web services of Softnext's products, Mail SQR Expert and Mail Archiving Expert do not properly validate user input, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the remote server.
Affected products
1- Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.twcert.org.tw/en/cp-139-7959-09d0e-2.htmlmitrevendor-advisory
- www.twcert.org.tw/tw/cp-132-7958-817f4-1.htmlmitrevendor-advisory
News mentions
0No linked articles in our index yet.