Security Advisory

CVE-2021-33515

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-28 12:04:59
Last updated 2024-08-03 23:50:42
Assigner mitre
State PUBLISHED

Description

The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can be redirected to an attacker-controlled address.