Vulnerability Description
Alt-N MDaemon Security Gateway through 8.5.0 allows SecurityGateway.dll?view=login XML Injection.
CVSS Score
5.3
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Altn | Securitygateway | >= 2.1.0, <= 8.5.0 |
Related Weaknesses (CWE)
References
- https://www.altn.com/Products/SecurityGateway-Email-Firewall/Product
- https://www.swascan.com/security-advisory-alt-n-security-gateway/ExploitPatchThird Party Advisory
- https://www.swascan.com/security-blog/Product
- https://www.altn.com/Products/SecurityGateway-Email-Firewall/Product
- https://www.swascan.com/security-advisory-alt-n-security-gateway/ExploitPatchThird Party Advisory
- https://www.swascan.com/security-blog/Product
- https://www.tinextacyber.com/security-advisory-alt-n-security-gataway-cve-2022-2
FAQ
What is CVE-2022-25356?
CVE-2022-25356 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Alt-N MDaemon Security Gateway through 8.5.0 allows SecurityGateway.dll?view=login XML Injection.
How severe is CVE-2022-25356?
CVE-2022-25356 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-25356?
Check the references section above for vendor advisories and patch information. Affected products include: Altn Securitygateway.