7.5
CVE-2024-32371
- EPSS 0.73%
- Veröffentlicht 07.05.2024 15:15:08
- Zuletzt bearbeitet 17.06.2025 20:17:30
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue in HSC Cybersecurity HC Mailinspector 5.2.17-3 through 5.2.18 allows a regular user account to escalate their privileges and gain administrative access by changing the type parameter from 1 to 0.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hsclabs ≫ Mailinspector Version >= 5.2.17-3 < 5.2.19
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.73% | 0.719 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.