CVE-2021-31988
Summary
| CVE | CVE-2021-31988 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-05 22:15:00 UTC |
| Updated | 2022-07-12 17:42:00 UTC |
| Description | A user controlled parameter related to SMTP test functionality is not correctly validated making it possible to add the Carriage Return and Line Feed (CRLF) control characters and include arbitrary SMTP headers in the generated test email. |
Risk And Classification
Problem Types: CWE-74
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Axis | Axis Os | All | All | All | All |
| Operating System | Axis | Axis Os 2016 | All | All | All | All |
| Operating System | Axis | Axis Os 2018 | All | All | All | All |
| Operating System | Axis | Axis Os 2020 | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.axis.com/files/tech_notes/CVE-2021-31988.pdf | MISC | www.axis.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.