NA

CVE-2020-36772

Published: 22/01/2024 Updated: 28/03/2024
CVSS v3 Base Score: 4.4 | Impact Score: 2.5 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.

Vulnerable Product Search on Vulmon Subscribe to Product

cloudlinux cagefs

Exploits

CloudLinux CageFS versions 708-2 and below insufficiently restrict file paths supplied to the sendmail proxy command This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment ...