CVE-2017-7829
CVE-2017-7829
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 1.8%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
11 jun 2018Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.
Produtos afetados
Mozilla · ThunderbirdQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://access.redhat.com/errata/RHSA-2018:0061https://bugzilla.mozilla.org/show_bug.cgi?id=1423432https://lists.debian.org/debian-lts-announce/2017/12/msg00026.htmlhttps://usn.ubuntu.com/3529-1/https://www.debian.org/security/2017/dsa-4075https://www.mozilla.org/security/advisories/mfsa2017-30/http://www.securityfocus.com/bid/102258http://www.securitytracker.com/id/1040123