Medium severity5.9NVD Advisory· Published Aug 17, 2021· Updated Jun 17, 2026
CVE-2020-15955
CVE-2020-15955
Description
In s/qmail through 4.0.07, an active MitM can inject arbitrary plaintext commands into a STARTTLS encrypted session between an SMTP client and s/qmail. This allows e-mail messages and user credentials to be sent to the MitM attacker.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- s/qmail/s/qmaildescription
Patches
Vulnerability mechanics
References
2- www.fehcom.de/sqmail/sqmail.htmlnvdPatchRelease NotesVendor Advisory
- nostarttls.secvuln.infonvdTechnical DescriptionThird Party Advisory
News mentions
0No linked articles in our index yet.