01642 06 11 11 Arrange Call

DKIM Key Injection Vulnerability in Micro Focus Secure Messaging Gateway (SMG)

CVE-2020-11852 · HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CVE-2020-11852

DKIM key management page vulnerability on Micro Focus Secure Messaging Gateway (SMG). Affecting all SMG Appliance running releases prior to July 2020. The vulnerability could allow a logged in user with rights to generate DKIM key information to inject system commands into the call to the DKIM system command.

Learn more about our User Device Pen Test.