Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-31245

mailcow before 2022-05d allows a remote authenticated user to inject OS commands and escalate privileges to domain admin via the --debug option in conjunction with the ---PIPEMESS option in Sync Jobs.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.227
EPSS Ranking 95.6%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2022-31245
  • Mailcow » Mailcow » Version: _dockerized
    cpe:2.3:a:mailcow:mailcow:_dockerized


Contact Us

Shodan ® - All rights reserved