Remote Code Execution Vulnerability in MailEnable Email Server
CVE-2022-42136
8.8HIGH
What is CVE-2022-42136?
Authenticated mail users can exploit a vulnerability in MailEnable Email Server, enabling them to upload files containing unsanitized content to public folders accessible by the IIS user. This flaw can be exploited by an attacker to store arbitrary code in those files, resulting in remote code execution and potentially compromising the server's integrity.
