CVE-2024-5400
CVE-2024-5400 allows remote command execution in Openfind Mail2000. Regular users can exploit this vulnerability to run arbitrary system commands. This CGI parameter filtering flaw poses a significant risk.
CVE-2024-5400 is a critical security vulnerability in Openfind Mail2000. It allows attackers, even with normal user privileges, to execute arbitrary system commands on the server. Despite the low SVRS score of 30, indicating a lower than critical risk, immediate patching is advised to mitigate potential exploitation, especially given the CWE-78 classification. Successful exploitation can lead to full system compromise. The vulnerability stems from improper input validation.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.