← back
CVE-2020-36772

CVE-2020-36772

CVSS 4.4 MEDIUMEPSS 0.4%CWE-73
CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Affected products
Cloudlinux OS · cagefs

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →