Vulnerability Details CVE-2024-5399
Openfind Mail2000 does not properly filter parameters of specific API. Remote attackers with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the remote server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 79.1%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2024-5399
-
cpe:2.3:a:openfind:mail2000:7.0
-
cpe:2.3:a:openfind:mail2000:8.0