Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where the IIS user had permission to access. That action, could lead an attacker to store arbitrary code on that files and execute RCE commands.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-01-13T00:00:00

Updated: 2023-01-13T00:00:00

Reserved: 2022-10-03T00:00:00


Link: CVE-2022-42136

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-01-13T21:15:15.523

Modified: 2023-01-23T18:27:50.980


Link: CVE-2022-42136

JSON object: View

cve-icon Redhat Information

No data.

CWE