VYPR

Messenger

by ConfigServer Security & Firewall

CVEs (1)

  • CVE-2026-67402Sep 3, 2026
    risk 0.00cvss epss

    An insecure Apache configuration in ConfigServer Security & Firewall maps /usr/bin as CGI programs through the Messenger v3 HTTPS virtual host. A remote unauthenticated attacker whose address is blocked can request a mapped executable and run arbitrary commands as the Apache…