CVE-2022-40257 | CERTCC VINCE up to 1.50.3 Email Subject injection (EUVD-2022-43555)
A vulnerability was found in CERTCC VINCE up to 1.50.3 and classified as critical. This affects an unknown part of the component Email Handler. Such manipulation of the argument Subject leads to injection.
This vulnerability is referenced as CVE-2022-40257. The attack needs to be initiated within the local network. No exploit is available.
It is suggested to upgrade the affected component.