PT-2023-18391 · M-Filter · M-Filter

CVE-2023-22278

·

Publicado

2023-01-17

·

Atualizado

2023-01-25

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions m-FILTER versions prior to 5.70R01 (Ver.5 Series) m-FILTER versions prior to 4.87R04 (Ver.4 Series)
Description The issue allows a remote unauthenticated attacker to bypass authentication and send users' unintended email when email is being sent under certain conditions. Attacks exploiting this issue have been observed.
Recommendations For m-FILTER versions prior to 5.70R01 (Ver.5 Series), update to version 5.70R01 or later. For m-FILTER versions prior to 4.87R04 (Ver.4 Series), update to version 4.87R04 or later.

Correção

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-22278

Produtos afetados

M-Filter