modoboa-dmarc
DMARC related tools for Modoboa
Activity
- Latest release
- 4y ago
- Total releases
- 10
- Cadence
- ~4 months
- Last 12 months
- 0
Details
- License
- MIT
- First release
- Mar 01, 2016
| Version | Released | |
|---|---|---|
1.3.0
minor
|
1.3.0
minor
Dependencies (4)
|
|
1.2.0
minor
|
1.2.0
minor
Dependencies (4)
|
|
1.1.0
minor
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
1.1.0
minor
Dependencies (4)
|
|
1.0.2
patch
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
1.0.2
patch
|
|
1.0.1
patch
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
1.0.1
patch
|
|
1.0.0
major
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
1.0.0
major
|
|
0.3.0
minor
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
0.3.0
minor
|
|
0.2.0
minor
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
0.2.0
minor
|
|
0.1.1
patch
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
0.1.1
patch
|
|
0.1.0
initial
1 CVE
CVE-2019-19702
GHSA-vc42-mgr2-w34r
PYSEC-2019-105
May 24, 2022
Modoboa is vulnerable to an XML External Entity Injection (XXE)
High
Network
Low
None
None
The modoboa-dmarc plugin 1.1.0 for Modoboa is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this to perform a denial of service against the DMARC reporting functionality, such as by referencing the /dev/random file within XML documents that are emailed to the address in the rua field of the DMARC records of a domain. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
1.0.0
1.0.1
1.0.2
1.1.0
Fixed in
1.2.0
References
Updated Nov 22, 2024 · Source: OSV.dev |
0.1.0
initial
|