CVE-2023-22278

m-FILTER prior to Ver.5.70R01 (Ver.5 Series) and m-FILTER prior to Ver.4.87R04 (Ver.4 Series) allows a remote unauthenticated attacker to bypass authentication and send users' unintended email when email is being sent under the certain conditions. The attacks exploiting this vulnerability have been observed.
References
Link Resource
https://jvn.jp/en/jp/JVN55675303/index.html Third Party Advisory
https://jvn.jp/en/jp/JVN55675303/index.html Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:daj:m-filter:*:*:*:*:*:*:*:*
cpe:2.3:a:daj:m-filter:*:*:*:*:*:*:*:*

History

04 Apr 2025, 19:15

Type Values Removed Values Added
CWE CWE-287

21 Nov 2024, 07:44

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-17 10:15

Updated : 2025-04-04 19:15


NVD link : CVE-2023-22278

Mitre link : CVE-2023-22278

CVE.ORG link : CVE-2023-22278


JSON object : View

Products Affected

daj

  • m-filter
CWE
NVD-CWE-noinfo CWE-287

Improper Authentication