Vulnerabilities (CVE)

Filtered by vendor Courier-mta Subscribe
Filtered by product Courier Mail Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-38084 1 Courier-mta 1 Courier Mail Server 2024-02-04 6.8 MEDIUM 8.1 HIGH
An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can pipeline commands after the POP3 STLS command, injecting plaintext commands into an encrypted user session.