CVE-2021-41590
Summary
| CVE | CVE-2021-41590 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-27 14:15:00 UTC |
| Updated | 2022-07-12 17:42:00 UTC |
| Description | In Gradle Enterprise through 2021.3, probing of the server-side network environment can occur via an SMTP configuration test. The installation configuration user interface available to administrators allows testing the configured SMTP server settings. This test function can be used to identify the listening TCP ports available to the server, revealing information about the internal network environment. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gradle | Enterprise | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Gradle Enterprise - Security Advisories | Gradle Inc. | MISC | security.gradle.com | |
| Gradle Enterprise - Security Advisories | Gradle Inc. | MISC | security.gradle.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.