Show filters
30 Total Results
Displaying 21-30 of 30
Sort by:
Attacker Value
Unknown

CVE-2006-5487

Disclosure Date: November 10, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in Marshal MailMarshal SMTP 5.x, 6.x, and 2006, and MailMarshal for Exchange 5.x, allows remote attackers to write arbitrary files via ".." sequences in filenames in an ARJ compressed archive.
0
Attacker Value
Unknown

CVE-2006-3215

Disclosure Date: June 24, 2006 (last updated October 04, 2023)
Clearswift MAILsweeper for SMTP before 4.3.20 and MAILsweeper for Exchange before 4.3.20 allows remote attackers to bypass the "text analysis", possibly bypassing SPAM and other filters, by sending an e-mail specifying a non-existent or unrecognized character set.
0
Attacker Value
Unknown

CVE-2006-3216

Disclosure Date: June 24, 2006 (last updated October 04, 2023)
Clearswift MAILsweeper for SMTP before 4.3.20 and MAILsweeper for Exchange before 4.3.20 allows remote attackers to cause a denial of service via (1) non-ASCII characters in a reverse DNS lookup result from a Received header, which leads to a Receiver service stop, and (2) unspecified vectors involving malformed messages, which causes "unpredictable behavior" that prevents the Security service from processing more messages.
0
Attacker Value
Unknown

CVE-2006-0447

Disclosure Date: January 27, 2006 (last updated February 22, 2025)
Multiple buffer overflows in E-Post Mail Server 4.10 and SPA-PRO Mail @Solomon 4.00 allow remote attackers to execute arbitrary code via a long username to the (1) AUTH PLAIN or (2) AUTH LOGIN SMTP commands, which is not properly handled by (a) EPSTRS.EXE or (b) SPA-RS.EXE; (3) a long username in the APOP POP3 command, which is not properly handled by (c) EPSTPOP4S.EXE or (d) SPA-POP3S.EXE; (4) a long IMAP DELETE command, which is not properly handled by (e) EPSTIMAP4S.EXE or (f) SPA-IMAP4S.EXE.
0
Attacker Value
Unknown

CVE-2005-4324

Disclosure Date: December 17, 2005 (last updated February 22, 2025)
Hitachi Groupmax Mail SMTP 06-50 through 06-52-/A and 07-00 through 07-20 allows remote attackers to cause a denial of service (service stop) via an e-mail message with an "invalid format."
0
Attacker Value
Unknown

CVE-2004-2703

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Clearswift MIMEsweeper 5.0.5, when it has been upgraded from MAILsweeper for SMTP version 4.3 or MAILsweeper Business Suite I or II, allows remote attackers to bypass scanning by including encrypted data in a mail message, which causes the message to be marked as "Clean" instead of "Encrypted".
0
Attacker Value
Unknown

CVE-2003-1477

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
MAILsweeper for SMTP 4.3.6 and 4.3.7 allows remote attackers to cause a denial of service (CPU consumption) via a PowerPoint attachment that either (1) is corrupt or (2) contains "embedded objects."
0
Attacker Value
Unknown

CVE-2002-1121

Disclosure Date: September 24, 2002 (last updated February 22, 2025)
SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the default configuration of MIMEDefang before 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2046 ("Message Fragmentation and Reassembly") and supported in such products as Outlook Express, which allows remote attackers to bypass content filtering, including virus checking, via fragmented emails of the message/partial content type.
0
Attacker Value
Unknown

CVE-2000-0932

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
MAILsweeper for SMTP 3.x does not properly handle corrupt CDA documents in a ZIP file and hangs, which allows remote attackers to cause a denial of service.
0
Attacker Value
Unknown

CVE-1999-1200

Disclosure Date: July 20, 1998 (last updated February 22, 2025)
Vintra SMTP MailServer allows remote attackers to cause a denial of service via a malformed "EXPN *@" command.
0