'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2026-03-30 | |
| Rule Name: | Owasp Mail CRLF Injection Attack Detection | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | This rule detects attacks that exploit URL encoding to bypass defenses, inject CRLF newline characters, and insert the SMTP command (QUIT). These attacks aim to identify CRLF injection vulnerabilities in backend mail services and prepare for subsequent malicious email delivery or server compromise. | |
| Impact: | If the attack probe succeeds, adversaries can disrupt backend protocol connections or perform unauthorized operations. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | ||
| Solutions |
|---|
| Please contact the software vendor to update the software patch. |