Vulnerability CVE-2002-1121


Published: 2002-09-24   Modified: 2012-02-12

Description:
SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the default configuration of MIMEDefang before 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2046 ("Message Fragmentation and Reassembly") and supported in such products as Outlook Express, which allows remote attackers to bypass content filtering, including virus checking, via fragmented emails of the message/partial content type.

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Trend micro -> Interscan viruswall 
Roaring penguin -> Canit 
Roaring penguin -> Mimedefang 
Network associates -> Webshield smtp 
GFI -> Mailsecurity 

 References:
http://archives.neohapsis.com/archives/bugtraq/2002-09/0134.html
http://archives.neohapsis.com/archives/bugtraq/2002-09/0135.html
http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0113.html
http://marc.info/?l=bugtraq&m=103184267105132&w=2
http://marc.info/?l=bugtraq&m=103184501408453&w=2
http://www.iss.net/security_center/static/10088.php
http://www.kb.cert.org/vuls/id/836088
http://www.securiteam.com/securitynews/5YP0A0K8CM.html
http://www.securityfocus.com/bid/5696

Copyright 2024, cxsecurity.com

 

Back to Top