Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In s/qmail through 4.0.07, an active MitM can inject arbitrary plaintext commands into a STARTTLS encrypted session between an SMTP client and s/qmail. This allows e-mail messages and user credentials to be sent to the MitM attacker.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
s/qmail 命令注入漏洞
Vulnerability Description
s/qmail是一个应用软件。一种基于Qmail的 邮件传输代理(MTA), 适用于通过 IPv4 和 IPv6 网络进行高速和机密电子邮件传输。 s/qmail存在安全漏洞,该漏洞允许将电子邮件消息和用户凭据发送给MitM攻击者可利用该漏洞。
CVSS Information
N/A
Vulnerability Type
N/A