CVE-2021-22848
18.03.2021, 05:15
HGiga MailSherlock contains a SQL Injection. Remote attackers can inject SQL syntax and execute SQL commands in a URL parameter of email pages without privilege.
| Vendor | Product | Version |
|---|---|---|
| hgiga | msr45_isherlock-antispam | 𝑥 < 4.5-133 |
| hgiga | msr45_isherlock-user | 𝑥 < 4.5-120 |
| hgiga | ssr45_isherlock-antispam | 𝑥 < 4.5-133 |
| hgiga | ssr45_isherlock-user | 𝑥 < 4.5-120 |
𝑥
= Vulnerable software versions