5
CVE-2003-1330
- EPSS 1.41%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:03:56
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Clearswift Limited ≫ Mailsweeper Version4.3.6_sp1 Editionsmtp
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.41% | 0.692 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://www.mimesweeper.com/download/bin/Patches/MAILsweeper_Patches_301_ReadMe.htm
http://www.securityfocus.com/bid/7226
https://exchange.xforce.ibmcloud.com/vulnerabilities/11745