Back

HIGH

Cybonet - PineApp

Published Dec 8, 2021

Description

PineApp - Mail Secure - The attacker must be logged in as a user to the Pineapp system. The attacker exploits the vulnerable nicUpload.php file to upload a malicious file,Thus taking over the server and running remote code.

Affected products

Remediation

Vendor solution

Code hardening by limiting the upload file to only limited images file types

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCD
Published Dec 8, 2021
Updated Aug 4, 2024
Reserved Jul 12, 2021
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a