Vulnerability Details CVE-2023-48380
Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function. A remote attacker authenticated as a localhost can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.3%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2023-48380
-
cpe:2.3:a:softnext:mail_sqr_expert:2dut.190301
-
cpe:2.3:a:softnext:mail_sqr_expert:2dut.220701