Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32755
HistoryOct 29, 2021 - 7:57 a.m.

Homograph Attacks

2021-10-2907:57:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
roundcube
vulnerability
homograph
attacks
punycode
domain names

EPSS

0.001

Percentile

45.4%

roundcube is vulnerable to homograph attacks. The vulnerability exists due to the way the system mishandles Punycode xn-- domain names which allows an attacker to cause a homograph attack.