10
CVE-2007-3803
- EPSS 2.26%
- Veröffentlicht 16.07.2007 23:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:45
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The SMTP ALG in Clavister CorePlus before 8.80.04, and 8.81.00, does not properly parse SMTP commands in certain circumstances, which allows remote attackers to bypass address blacklists.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Clavister ≫ Clavister Coreplus Version <= 8.80.03
Clavister ≫ Clavister Coreplus Version <= 8.81.00
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.26% | 0.807 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://osvdb.org/37974
http://secunia.com/advisories/25957
http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_80_04.pdf
http://www.clavister.com/releasenotes/CorePlus_Release_Notes_8_81_01.pdf
https://exchange.xforce.ibmcloud.com/vulnerabilities/35371