PT-2003-1492 · Ibm+1 · Ibm Aix+1

Tom Perrine

·

Published

2003-05-14

·

Updated

2017-07-11

·

CVE-2003-0285

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions: IBM AIX versions 5.2 and earlier
Description: The issue concerns the configuration of Sendmail in IBM AIX, which allows it to be used as an open mail relay for sending spam email due to certain features being enabled, including promiscuous relay, acceptance of unresolvable domains, and acceptance of unqualified senders.
Recommendations: For IBM AIX versions 5.2 and earlier, consider reconfiguring Sendmail to disable the promiscuous relay, accept unresolvable domains, and accept unqualified senders features to prevent its use as an open mail relay.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0285

Affected Products

Ibm Aix
Sendmail