PT-2004-3314 · Ipswitch · Ipswitch Imail Server

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-2422

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Ipswitch IMail Server versions prior to 8.13
Description: The issue allows remote attackers to cause a denial of service, resulting in a crash. This can be achieved by sending a long sender field to the Queue Manager or a long To field to the Web Messaging component.
Recommendations: For versions prior to 8.13, update to version 8.13 or later to resolve the issue. As a temporary workaround, consider restricting the length of sender and To fields in the Queue Manager and Web Messaging component to prevent crashes.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-2422

Affected Products

Ipswitch Imail Server