Enterprise Protection contains a vulnerability in URL rewriting that allows an unauthenticated remote attacker to send an email which bypasses URL protections impacting the integrity of recipient's email. This occurs due to improper filtering of backslashes within URLs and affects all versions of 8.21, 8.20 and 8.18 prior to 8.21.0 patch 5115, 8.20.6 patch 5114 and 8.18.6 patch 5113 respectively.
References
Configurations
No configuration.
History
19 Mar 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-19 17:15
Updated : 2025-03-19 17:15
NVD link : CVE-2025-0431
Mitre link : CVE-2025-0431
CVE.ORG link : CVE-2025-0431
JSON object : View
Products Affected
No product.
CWE
CWE-790
Improper Filtering of Special Elements