CVE-2021-29432

Description

Sydent is a reference matrix identity server. A malicious user could abuse Sydent to send out arbitrary emails from the Sydent email address. This could be used to construct plausible phishing emails, for example. This issue has been fixed in 4469d1d.

Risk Information

Base Score
5.7
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
0.25

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-29430,CVE-2021-29431,CVE-2021-29432,CVE-2021-29433 are fixed in Python-matrix-sydent 2.3.0Windows
Vulnerabilities CVE-2021-29430,CVE-2021-29431,CVE-2021-29432,CVE-2021-29433 are fixed in Python-matrix-sydent for linux 2.3.0Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234