EIP-2026-104082
PRE-CVESoftek MailMarshal 4 / Trend Micro ScanMail 1.0 - SMTP Attachment Protection Bypass
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-104082. PoCs published by Aidan O'Kelly.
AI-analyzed exploit summary This Perl script exploits a vulnerability in SMTP gateways by manipulating filename extensions with illegal characters, bypassing attachment restrictions. It sends a malicious attachment with a modified extension that Outlook normalizes, delivering an executable file to the recipient.
Description
Softek MailMarshal 4 / Trend Micro ScanMail 1.0 - SMTP Attachment Protection Bypass
Exploits (1)
This Perl script exploits a vulnerability in SMTP gateways by manipulating filename extensions with illegal characters, bypassing attachment restrictions. It sends a malicious attachment with a modified extension that Outlook normalizes, delivering an executable file to the recipient.