Lucene search

K
cvelistJpcertCVELIST:CVE-2023-22278
HistoryJan 17, 2023 - 12:00 a.m.

CVE-2023-22278

2023-01-1700:00:00
jpcert
www.cve.org
1
m-filter
authentication bypass
remote attacker

AI Score

5.9

Confidence

High

EPSS

0.001

Percentile

48.9%

m-FILTER prior to Ver.5.70R01 (Ver.5 Series) and m-FILTER prior to Ver.4.87R04 (Ver.4 Series) allows a remote unauthenticated attacker to bypass authentication and send users’ unintended email when email is being sent under the certain conditions. The attacks exploiting this vulnerability have been observed.

CNA Affected

[
  {
    "vendor": "Digital Arts Inc.",
    "product": "m-FILTER Ver.5 Series and Ver.4 Series",
    "versions": [
      {
        "version": "m-FILTER prior to Ver.5.70R01 (Ver.5 Series) and m-FILTER prior to Ver.4.87R04 (Ver.4 Series)",
        "status": "affected"
      }
    ]
  }
]

AI Score

5.9

Confidence

High

EPSS

0.001

Percentile

48.9%

Related for CVELIST:CVE-2023-22278