CVE-2021-27183

An issue was discovered in MDaemon before 20.0.4. Administrators can use Remote Administration to exploit an Arbitrary File Write vulnerability. An attacker is able to create new files in any location of the filesystem, or he may be able to modify existing files. This vulnerability may directly lead to Remote Code Execution.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:altn:mdaemon:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:57

Type Values Removed Values Added
References () https://github.com/chudyPB/MDaemon-Advisories - Exploit, Third Party Advisory () https://github.com/chudyPB/MDaemon-Advisories - Exploit, Third Party Advisory
References () https://www.altn.com/Support/SecurityUpdate/MD011221_MDaemon_EN/ - Release Notes, Vendor Advisory () https://www.altn.com/Support/SecurityUpdate/MD011221_MDaemon_EN/ - Release Notes, Vendor Advisory

Information

Published : 2021-04-14 23:15

Updated : 2024-11-21 05:57


NVD link : CVE-2021-27183

Mitre link : CVE-2021-27183

CVE.ORG link : CVE-2021-27183


JSON object : View

Products Affected

altn

  • mdaemon
CWE
CWE-610

Externally Controlled Reference to a Resource in Another Sphere