Loading
Exim through 4.93 has an out-of-bounds read in the SPA authenticator that could result in SPA/NTLM authentication bypass in auths/spa.c and auths/auth-spa.c.
Use CWE-125, Exim vendor hub and Exim product page to widen CVE-2020-12783 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-42117, CVE-2023-42116 and CVE-2023-42115 for nearby disclosures in the same product family.