CVE-2020-11806

Severity CVSS v4.0:
Pending analysis
Type:
CWE-295 Improper Certificate Validation
Publication date:
23/04/2020
Last modified:
01/05/2020

Description

In MailStore Outlook Add-in (and Email Archive Outlook Add-in) through 12.1.2, the login process does not validate the validity of the certificate presented by the server.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mailstore:mailstore_server:*:*:*:*:*:*:*:* 12.1.2 (including)


References to Advisories, Solutions, and Tools