Vulnerability Details CVE-2021-28042
Deutsche Post Mailoptimizer 4.3 before 2020-11-09 allows Directory Traversal via a crafted ZIP archive to the Upload feature or the MO Connect component. This can lead to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.052
EPSS Ranking 89.5%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 8.3
Products affected by CVE-2021-28042
-
cpe:2.3:a:deutschepost:mailoptimizer:4.3