PT-2020-16245 · Hgiga · Hgiga Mailsherlock

Dio Lin

+1

·

Published

2020-12-31

·

Updated

2021-01-08

·

CVE-2020-25850

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HGiga MailSherlock (affected versions not specified)
Description The issue concerns the function that views the source code in HGiga MailSherlock, which fails to validate specific characters. This flaw allows remote attackers to download arbitrary system files.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-25850

Affected Products

Hgiga Mailsherlock