PT-2004-3314 · Ipswitch · Ipswitch Imail Server
Published
2004-12-31
·
Updated
2017-07-11
·
CVE-2004-2422
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Ipswitch IMail Server versions prior to 8.13
Description:
The issue allows remote attackers to cause a denial of service, resulting in a crash. This can be achieved by sending a long sender field to the Queue Manager or a long To field to the Web Messaging component.
Recommendations:
For versions prior to 8.13, update to version 8.13 or later to resolve the issue. As a temporary workaround, consider restricting the length of sender and To fields in the Queue Manager and Web Messaging component to prevent crashes.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ipswitch Imail Server