Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an arbitrary server via HTTP POST request.
This Cyber News was published on www.tenable.com. Publication date: Tue, 05 Nov 2024 17:16:03 +0000