Email security vendor Sendio has patched a pair of remotely exploitable security bypass vulnerabilities in its Sendio ESP, or Email Security Platform, product.
Researchers at Core Security Technologies reported the vulnerabilities March 26 to Sendio, along with a proof of concept that triggers the bug. Sendio version 6 (14.1120.0) is affected by this bug, and possibly others, and is patched in Sendio 7.2.4.
Leave a reply