Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
MailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAIMF.DLL
Vulnerability Description
MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable administrative executable attempts to load MEAIMF.DLL from its installation directory without sufficient integrity validation or a secure search order. A local attacker with write access to that directory can plant a malicious MEAIMF.DLL, which is then loaded when the executable starts, resulting in execution of attacker-controlled code with the privileges of the process.
CVSS Information
N/A
Vulnerability Type
对搜索路径元素未加控制
Vulnerability Title
MailEnable 代码问题漏洞
Vulnerability Description
MailEnable是澳大利亚MailEnable公司的一个基于 Windows 的商业电子邮件服务器。 MailEnable 10.54之前版本存在代码问题漏洞,该漏洞源于不安全DLL加载,可能导致本地任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A