Security Advisory

CVE-2012-6580

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-07-24 10:00:00
Last updated 2024-09-17 02:11:50
Assigner mitre
State PUBLISHED

Description

Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, does not ensure that the UI labels unencrypted messages as unencrypted, which might make it easier for remote attackers to spoof details of a messages origin or interfere with encryption-policy auditing via an e-mail message to a queues address.