CVE-2021-31988

A user controlled parameter related to SMTP test functionality is not correctly validated making it possible to add the Carriage Return and Line Feed (CRLF) control characters and include arbitrary SMTP headers in the generated test email.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:axis:axis_os_2020:*:*:*:*:lts:*:*:*
cpe:2.3:o:axis:axis_os_2018:*:*:*:*:lts:*:*:*
cpe:2.3:o:axis:axis_os_2016:*:*:*:*:lts:*:*:*
cpe:2.3:o:axis:axis_os:*:*:*:*:active:*:*:*

Information

Published : 2021-10-05 15:15

Updated : 2022-07-12 10:42


NVD link : CVE-2021-31988

Mitre link : CVE-2021-31988


JSON object : View

CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Advertisement

dedicated server usa

Products Affected

axis

  • axis_os_2020
  • axis_os
  • axis_os_2016
  • axis_os_2018