The SMTP ALG in Clavister CorePlus before 8.80.04, and 8.81.00, does not properly parse SMTP commands in certain circumstances, which allows remote attackers to bypass address blacklists.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Clavister_coreplus | Clavister | * | 8.80.03 (including) |
| Clavister_coreplus | Clavister | * | 8.81.00 (including) |