Vulnerabilities > CVE-2003-1330 - Unspecified vulnerability in Clearswift Limited Mailsweeper 4.3.6Sp1

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
microsoft
clearswift-limited

Summary

Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.

Vulnerable Configurations

Part Description Count
OS
Microsoft
1
Application
Clearswift_Limited
1