CVE-2023-48380: Softnext Mail Sqr Expert
High severity, CVSS 8.0. EPSS: 0.7% chance of exploitation in the next 30 days.
Softnext Mail SQR Expert is an email management platform, it has insufficient filtering for a special character within a spcific function. A remote attacker authenticated as a localhost can exploit this vulnerability to perform command injection attacks, to execute arbitrary system command, manipulate system or disrupt service.
Affected products
- Softnext Mail Sqr Expert: before 230330 (fixed in 230330)
Published 2023-12-15. Last modified 2026-06-17.