A user with device administrative privileges can change existing SMTP server settings on the device, without having to re-enter SMTP server credentials. By redirecting send-to-email traffic to the new server, the original SMTP server credentials may potentially be exposed.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds