Openfind Mail2000 does not properly filter parameters of specific API. Remote attackers with administrative privileges can exploit this vulnerability to execute arbitrary system commands on the remote server.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://www.twcert.org.tw/tw/cp-132-7817-6ce29-1.html |       | 
History
                    Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | epss 
 | epss 
 | 
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | epss 
 | epss 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: twcert
Published: 2024-05-27T03:32:29.744Z
Updated: 2024-08-01T21:11:12.667Z
Reserved: 2024-05-27T03:06:02.716Z
Link: CVE-2024-5399
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-01T21:11:12.667Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2024-05-27T04:15:09.300
Modified: 2024-11-21T09:47:34.720
Link: CVE-2024-5399
 Redhat
                        Redhat
                    No data.