Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Georget

#29354of 53,619
8.8Total CVSS
Vulnerabilities · 1
PT-2023-14065
8.8
2023-01-13
Mailenable · Mailenable · CVE-2022-42136
**Name of the Vulnerable Software and Affected Versions** No specific software or versions are mentioned in the provided descriptions. **Description** The issue allows authenticated mail users, under specific circumstances, to add files with unsanitized content in public folders where the IIS user had permission to access. This could lead an attacker to store arbitrary code on those files and execute Remote Code Execution (RCE) commands. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.