Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m7r5-gh9x-xg9m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.

An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.

EPSS

Процентиль: 66%
0.00513
Низкий

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 4 лет назад

An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.

CVSS3: 8.1
nvd
больше 4 лет назад

An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.

CVSS3: 8.1
debian
больше 4 лет назад

An issue was discovered in the POP3 component of Courier Mail Server b ...

EPSS

Процентиль: 66%
0.00513
Низкий

Дефекты

CWE-74