A user controlled parameter related to SMTP test functionality is not correctly validated making it possible to add the Carriage Return and Line Feed (CRLF) control characters and include arbitrary SMTP headers in the generated test email.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.axis.com/files/tech_notes/CVE-2021-31988.pdf |
History
Fri, 08 Nov 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-1286 |
MITRE
Status: PUBLISHED
Assigner: Axis
Published: 2021-10-05T21:48:03
Updated: 2024-11-08T08:20:43.807Z
Reserved: 2021-04-30T00:00:00
Link: CVE-2021-31988
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-10-05T22:15:07.937
Modified: 2024-11-21T06:06:40.440
Link: CVE-2021-31988
Redhat
No data.