CVE

CVE-2018-1000999

CVE-2018-1000999

Fastnet SA MailCleaner version 2018092601 contains a Command Injection (CWE-78) vulnerability in /admin/managetracing/search/search that can result in an authenticated web application user running commands on the underlying web server as root. This attack appears to be exploitable via Post-authentication access to the web server.

Source: CVE-2018-1000999

Exit mobile version