Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2v87-869h-xp3x

Опубликовано: 13 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with IMAP or POP3 without any verification code.

A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with IMAP or POP3 without any verification code.

EPSS

Процентиль: 72%
0.00704
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 9.8
nvd
около 3 лет назад

A 2-Step Verification problem in Axigen 10.3.3.52 allows an attacker to access a mailbox by bypassing 2-Step Verification when they try to add an account to any third-party webmail service (or add an account to Outlook or Gmail, etc.) with IMAP or POP3 without any verification code.

EPSS

Процентиль: 72%
0.00704
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-276