CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.9. See the original NVD description below for full technical details.
CVE
CVE-2020-36519
Severity
MEDIUM
CVSS
4.9
EPSS
0.80%
Original NVD Description
Mimecast Email Security before 2020-01-10 allows any admin to spoof any domain, and pass DMARC alignment via SPF. This occurs through misuse of the address rewrite feature. (The domain being spoofed must be a customer in the Mimecast grid from which the spoofing occurs.)