ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-29547”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-29547
Published
2023-05-29
CVSS:
5.9
ShadowTrackr CVSS:
4.6
Summary:
An issue was discovered in Citadel through webcit-926. Meddler-in-the-middle attackers can pipeline commands after POP3 STLS, IMAP STARTTLS, or SMTP STARTTLS commands, injecting cleartext commands into an encrypted user session. This can lead to credential disclosure.