CVE-2023-48380
CVSS 3.1 Score 8.0 of 10 (high)
Details
Published Dec 15, 2023
Updated: Dec 21, 2023
CWE ID 78
Summary
CVE-2023-48380 is a vulnerability affecting Softnext Mail SQR Expert, an email management platform. The issue involves insufficient filtering for a specific character within a certain function. An attacker, once authenticated as a localhost, can take advantage of this vulnerability to execute command injection attacks. This allows the attacker to manipulate the system and potentially disrupt services, making it a significant security concern.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share