DKIM key management page vulnerability on Micro Focus Secure Messaging Gateway (SMG). Affecting all SMG Appliance running releases prior to July 2020. The vulnerability could allow a logged in user with rights to generate DKIM key information to inject system commands into the call to the DKIM system command.
References
| Link | Resource |
|---|---|
| https://support.microfocus.com/kb/doc.php?id=7024775 | Vendor Advisory |
Configurations
Information
Published : 2020-08-07 16:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-11852
Mitre link : CVE-2020-11852
JSON object : View
Products Affected
microfocus
- secure_messaging_gateway
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
