CVE-2020-35851: Hgiga MSR45 Isherlock-User
Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.
HGiga MailSherlock does not validate specific parameters properly. Attackers can use the vulnerability to launch Command inject attacks remotely and execute arbitrary commands of the system.
Affected products
- Hgiga MSR45 Isherlock-User: before 4.5-115 (fixed in 4.5-115)
- Hgiga SSR45 Isherlock-User: before 4.5-115 (fixed in 4.5-115)
Published 2020-12-31. Last modified 2026-06-17.