CVE-2025-34491
28.04.2025, 20:15
GFI MailEssentials prior to version 21.8 is vulnerable to a .NET deserialization issue. A remote and authenticated attacker can execute arbitrary code by sending crafted serialized .NET when joining to a Multi-Server setup.Enginsight
Vendor | Product | Version |
---|---|---|
gfi | mailessentials | 𝑥 < 21.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration