Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
BID:8982
Info
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
| Bugtraq ID: | 8982 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 05 2003 12:00AM |
| Updated: | Nov 05 2003 12:00AM |
| Credit: | The disclosure of this issue has been credited to Pete Simpson. |
| Vulnerable: |
Clearswift MailSweeper 4.3.10 Clearswift MailSweeper 4.3.8 Clearswift MailSweeper 4.3.7 Clearswift MailSweeper 4.3.6 SP1 Clearswift MailSweeper 4.3.6 Clearswift MailSweeper 4.3.5 Clearswift MailSweeper 4.3.4 Clearswift MailSweeper 4.3.3 Clearswift MailSweeper 4.3 Clearswift MailSweeper 4.2 Clearswift MailSweeper 4.1 Clearswift MailSweeper 4.0 |
| Not Vulnerable: | |
Discussion
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
It has been reported that MAILsweeper for SMTP may be prone to a vulnerability that may cause the software to fail in detecting malicious zip archives. The software does not filter certain malicious zip archives such as those generated by the Mimail worm (MCID 1763).
Successful exploitation may allow malicious code to be executed on client systems. Exploitation can only occur if a user executes a malicious attachment and malicious files must also bypass any local anti virus software.
MAILsweeper for SMTP 4.3.10 and prior versions have been reported to be prone to this issue.
It has been reported that MAILsweeper for SMTP may be prone to a vulnerability that may cause the software to fail in detecting malicious zip archives. The software does not filter certain malicious zip archives such as those generated by the Mimail worm (MCID 1763).
Successful exploitation may allow malicious code to be executed on client systems. Exploitation can only occur if a user executes a malicious attachment and malicious files must also bypass any local anti virus software.
MAILsweeper for SMTP 4.3.10 and prior versions have been reported to be prone to this issue.
Exploit / POC
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
Solution:
The vendor has released a patch to address this issue. User are advised to contact the vendor for more information.
Solution:
The vendor has released a patch to address this issue. User are advised to contact the vendor for more information.
References
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability
References:
References:
- Home Page (Clearswift)