Описание
OpenDMARC through 1.3.2 and 1.4.x, when used with pypolicyd-spf 2.0.2, allows attacks that bypass SPF and DMARC authentication in situations where the HELO field is inconsistent with the MAIL FROM field.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Technical DescriptionThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Technical DescriptionThird Party Advisory
Уязвимые конфигурации
Одновременно
Одно из
EPSS
9.8 Critical
CVSS3
6.8 Medium
CVSS2
Дефекты
Связанные уязвимости
OpenDMARC through 1.3.2 and 1.4.x, when used with pypolicyd-spf 2.0.2, allows attacks that bypass SPF and DMARC authentication in situations where the HELO field is inconsistent with the MAIL FROM field.
OpenDMARC through 1.3.2 and 1.4.x, when used with pypolicyd-spf 2.0.2, ...
OpenDMARC through 1.3.2 and 1.4.x, when used with pypolicyd-spf 2.0.2, allows attacks that bypass SPF and DMARC authentication in situations where the HELO field is inconsistent with the MAIL FROM field.
EPSS
9.8 Critical
CVSS3
6.8 Medium
CVSS2