CyberRota Analysis
AI-GeneratedThe Mailu mail server, when deployed using Docker and prior to version 2024.06.52, is vulnerable due to a missing authorization check in its admin REST API, allowing unauthenticated attackers to bypass IP restrictions and modify user tokens. This vulnerability poses a significant risk as it can lead to unauthorized access and manipulation of user data. Organizations using Mailu should prioritize upgrading to the patched version or disabling the REST API to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Mailu is a mail server as a set of Docker images. Prior to version 2024.06.52, a missing authorization check in the Mailu admin REST API allows any unauthenticated attacker to remove any potential IP restriction or update the comment field from any existing user token provided the REST API is enabled. Upgrade to Mailu 2024.06.52 to receive a patch or, as a workaround, turn the REST API off.