MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
BID:43182
Info
MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
| Bugtraq ID: | 43182 |
| Class: | Design Error |
| CVE: |
CVE-2010-2580 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 13 2010 12:00AM |
| Updated: | Sep 13 2010 12:00AM |
| Credit: | Dmitriy Pletnev of Secunia Research |
| Vulnerable: |
MailEnable MailEnable Professional 4.25 MailEnable MailEnable Enterprise Edition 4.25 |
| Not Vulnerable: | |
Discussion
MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
MailEnable is prone to multiple remote denial-of-service vulnerabilities.
An attacker can exploit these issue to crash the affected application, denying service to legitimate users.
MailEnable 4.25 Standard Edition, Professional Edition, and Enterprise Edition are vulnerable; other versions may also be affected.
MailEnable is prone to multiple remote denial-of-service vulnerabilities.
An attacker can exploit these issue to crash the affected application, denying service to legitimate users.
MailEnable 4.25 Standard Edition, Professional Edition, and Enterprise Edition are vulnerable; other versions may also be affected.
Exploit / POC
MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
Attackers can use readily available network utilities to exploit these issues.
Attackers can use readily available network utilities to exploit these issues.
Solution / Fix
MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
Solution:
The vendor has released hotfix ME-10044. Please see the references for more information.
Solution:
The vendor has released hotfix ME-10044. Please see the references for more information.
References
MailEnable 'MESMTRPC.exe' SMTP Service Multiple Remote Denial of Service Vulnerabilities
References:
References: