AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2020-12641.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSUnscoredNo severity score in this snapshot.
EXPLOITATION STATUSCISA known exploitedAdded Jun 22, 2023
RECORD STATUSAwaiting NVD dataModified Jun 22, 2023

Disclosure summary

Roundcube Webmail contains an remote code execution vulnerability that allows attackers to execute code via shell metacharacters in a configuration setting for im_convert_path or im_identify_path.

CISA remediation guidance

Apply updates per vendor instructions.

Original records & references

PUBLISHED 2023-06-22T00:00:00-04:00
MODIFIED 2023-06-22T00:00:00-04:00
INGESTED 2026-10-06T11:42:58-04:00