CVE-2024-32370
CRITICALHSC Cybersecurity HC Mailinspector <5.2.18 - Info Disclosure
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-32370. PoCs published by chucrutis.
AI-analyzed exploit summary The repository provides a detailed technical analysis of CVE-2024-32370, an information disclosure vulnerability in HSC Mailinspector due to insufficient input validation in the `id` parameter of `mliSystemUsers.php`. It includes the vulnerable component, parameter, payload, and attack scenario but lacks functional exploit code.
Description
An issue in HSC Cybersecurity HC Mailinspector 5.2.17-3 through 5.2.18 allows a remote attacker to obtain sensitive information via a crafted payload to the id parameter in the mliSystemUsers.php component.
Exploits (1)
The repository provides a detailed technical analysis of CVE-2024-32370, an information disclosure vulnerability in HSC Mailinspector due to insufficient input validation in the `id` parameter of `mliSystemUsers.php`. It includes the vulnerable component, parameter, payload, and attack scenario but lacks functional exploit code.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H