Loading
An issue was discovered in Cleo LexiCom 5.5.0.0. The requirement for the sender of an AS2 message to identify themselves (via encryption and signing of the message) can be bypassed by changing the Content-Type of the message to text/plain.
Use Cleo vendor hub and Lexicom product page to widen CVE-2021-33577 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-55956, CVE-2024-50623 and CVE-2021-33576 for nearby disclosures in the same product family.