CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable.
CVE
CVE-2007-2188
Severity
HIGH
CVSS
10
EPSS
2.37%
Original NVD Description
eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers to conduct DNS spoofing.