RULE(RULE ID:337813)

Rule General Information
Release Date: 2024-01-30
Rule Name: EYou v4 domain_logo.php Command Execution Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: EYou e-mail system is a domestic e-mail system developed by Beijing Yizhong e-mail Information Technology Co. , Ltd. . There is a remote code execution vulnerability in the e-mail system, which can be exploited by attackers to bring malicious commands behind the Cookie header of HTTP requests, resulting in command execution.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.