Home

Description

A vulnerability in multi-tenant hosting allows an authenticated sender to spoof the identity of a shared, hosted domain, thus bypass security measures provided by DMARC (or SPF or DKIM) policies.

PUBLISHED Reserved 2024-07-29 | Published 2024-07-30 | Updated 2024-10-29 | Assigner certcc

Problem types

CWE-290 Authentication Bypass by Spoofing

Product status

Current
affected

References

kb.cert.org/vuls/id/244112

www.kb.cert.org/vuls/id/244112

kb.cert.org/vuls/id/244112

cve.org (CVE-2024-7208)

nvd.nist.gov (CVE-2024-7208)

Download JSON