The SMTP ALG in Clavister CorePlus before 8.80.04, and 8.81.00, does not properly parse SMTP commands in certain circumstances, which allows remote attackers to bypass address blacklists.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Clavister_coreplus | Clavister | * | 8.80.03 (including) |
Clavister_coreplus | Clavister | * | 8.81.00 (including) |