HSC MailInspector是巴西HSC公司的一个邮件安全分析与过滤系统。 HSC MailInspector 5.3.3-7版本存在安全漏洞,该漏洞源于端点/tap/dw.php中text参数用于构建文件路径时未充分规范化或限制到安全基目录,可能导致路径遍历。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | HSC MailInspector 5.3.3-7 contains a path traversal caused by improper validation of user-supplied input in /tap/dw.php text parameter, letting remote attackers access arbitrary files, exploit requires crafted request. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-29963.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2026-8836 | 9.8 CRITICAL | lwIP snmpv3 USM snmp_msg.c snmp_parse_inbound_frame stack-based overflow |
| CVE-2026-36438 | 5.3 MEDIUM | Intelbras VIP-1230-D-G4 安全漏洞 |
| CVE-2026-26462 | Offline Hospital Management System 安全漏洞 | |
| CVE-2026-39079 | PrestaShop UPS Shipping 信息泄露漏洞 | |
| CVE-2025-57282 | ngrok 命令注入漏洞 | |
| CVE-2025-56352 | tinyMQTT 资源管理错误漏洞 | |
| CVE-2023-24215 | NOVUS Automation AirGate 4G firmware 安全漏洞 | |
| CVE-2026-41085 | Thermo Fisher Scientific Torrent Suite Dx 安全漏洞 | |
| CVE-2026-38719 | OpENer 缓冲区错误漏洞 | |
| CVE-2026-29964 | HSC MailInspector 跨站脚本漏洞 | |
| CVE-2026-29962 | HSC MailInspector 安全漏洞 | |
| CVE-2026-29965 | HSC MailInspector 跨站脚本漏洞 |
No comments yet