Openfind Mail2000 contains Broken Access Control vulnerability, which can be used to execute unauthorized commands after attackers obtain the administrator access token or cookie.
No PoCs from references.
- https://github.com/404notf0und/CVE-Flow