ZeroHour

CVE-2021-35299

CVSS 3.1
7.5 high
EPSS
1%p64
Published
()
Modified
Description

Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows attackers to obtain sensitive information via email connection configuration probing.

Vendors
zammad
Products
zammad
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.