CVE-2020-23824

HIGH

ArGo Soft Mail Server 1.8.8.9 - CSRF

Title source: llm
STIX 2.1

Description

ArGo Soft Mail Server 1.8.8.9 is affected by Cross Site Request Forgery (CSRF) for perform remote arbitrary code execution. The component is the Administration dashboard. When using admin/user credentials, if the admin/user admin opens a website with the malicious page that will run the CSRF.

References (1)

Core 1

Scores

CVSS v3 8.8
EPSS 0.0029
EPSS Percentile 52.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-352
Status published
Products (1)
argosoft/mail_server 1.8.8.9
Published Sep 11, 2020
Tracked Since Feb 18, 2026