CVE Published: 22/01/2024 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: redhat |
Vendor: Cloudlinux OS |
Product: cagefs Status : PUBLISHED
CVE-2020-36772 Description
CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.