Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8fxj-5f25-469x

Опубликовано: 30 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Hosted services do not verify the sender of an email against authenticated users, allowing an attacker to spoof the identify of another user's email address.

Hosted services do not verify the sender of an email against authenticated users, allowing an attacker to spoof the identify of another user's email address.

EPSS

Процентиль: 23%
0.00075
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

A vulnerability in multi-tenant hosting allows an authenticated sender to spoof the identity of a shared, hosted domain, thus bypass security measures provided by DMARC (or SPF or DKIM) policies.

EPSS

Процентиль: 23%
0.00075
Низкий

6.5 Medium

CVSS3