Shells at midnight: Exploiting the flexibility of Email addresses for offensive purposes.

Today we are publishing a new blog post about our disclosure report on #MailCleaner #CVE-2024-3191: https://modzero.com/en/blog/beyond_the_at_symbol/

Details will also be presented by @born0monday at @[email protected] today.

Beyond the @ Symbol: Exploiting the Flexibility of Email Addresses For Offensive Purposes

Heads up, admins! We identified critical vulnerabilities in MailCleaner. A command injection vulnerability can be exploited by sending an Email - Update ASAP. Our full disclosure report can be found here: https://modzero.com/en/advisories/mz-24-01-mailcleaner/

Kudos to https://chaos.social/@born0monday and https://chaos.social/@parzel #MailCleaner #CVE-2024-3191 #Infosec

[MZ-24-01] MailCleaner

📣Small reminder 📣 #Alinto #Mailcleaner and #Cleanmail, will be on the booth G04 #Cloudfest !
and this 22/03 (Europa room), we'll hosting the #SOGoDay, customer, users of @scalableogo join us, we'll talk about the future of #SOGo !
sogo.nu/news/2023/clou…
Looking forward to meeting you!
#mailcleaner 2017 (community édition), y a t il quelqu'un qui a réussi à monter une image Esxi ? J'ai bien survolé le forum, mais pas trouvé de solution....bon je sais j'ai un Esxi 5, la communauté n'a pas très véloce non ?