PT-2024-24293 · Unknown · Mailcleaner

Michael Imfeld

+1

·

Published

2024-04-28

·

Updated

2025-03-21

·

CVE-2024-3193

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MailCleaner versions up to 2023.03.14
Description A critical issue has been found in the Admin Endpoints component of MailCleaner, affecting an unknown functionality. This issue leads to os command injection, allowing remote attacks. The exploit for this issue has been disclosed publicly.
Recommendations For MailCleaner versions up to 2023.03.14, apply a patch to fix this issue. As a temporary workaround, consider restricting access to the Admin Endpoints component until a patch is available.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-3193

Affected Products

Mailcleaner