CVE-2000-0056: Medium severity Ipswitch IMail vulnerability
IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable or remove the IMONITOR status.cgi CGI script or reconfigure the webserver to prevent remote execution of status.cgi (for example, remove the CGI mapping or restrict access to local/administrative hosts).
Ipswitch IMail (IMONITOR status.cgi) status.cgi enabled = false - Compensating control
Restrict access to the IMONITOR status.cgi endpoint to trusted administrative IPs at the firewall or edge (or via webserver ACLs) and/or implement rate-limiting or WAF rules to block or throttle excessive requests to status.cgi to mitigate denial-of-service attempts.
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0056?
CVE-2000-0056 is classified as a denial of service vulnerability, which can disrupt IMail services.
How do I fix CVE-2000-0056?
To fix CVE-2000-0056, you should update your IMail server to a patched version provided by Ipswitch.
Which versions of Ipswitch IMail are affected by CVE-2000-0056?
CVE-2000-0056 affects Ipswitch IMail versions 5.0.8, 6.0, and 6.1.
What type of attack does CVE-2000-0056 enable?
CVE-2000-0056 enables remote attackers to cause a denial of service by making numerous calls to the status.cgi script.
Is CVE-2000-0056 still a risk if my IMail software is updated?
If your IMail software is updated to a version that addresses this vulnerability, the risk associated with CVE-2000-0056 should be mitigated.