Security Advisory

CVE-2024-5143

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-23 16:58:15
Last updated 2024-10-31 14:48:58
Assigner hp
State PUBLISHED

Description

A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentials. By redirecting send-to-email traffic to the new server, the original SMTP server credentials may potentially be exposed.