The Web Application Security Consortium is proud to present 'MX Injection: Capturing and Exploiting Hidden Mail Servers'. This article discusses how an attacker can inject additional commands into an online web mail application communicating with an IMAP/SMTP server.
94bd8b84698e67eb59003ab5d105584a50366e226a59e7e88a6db217ff2cff30