First published: Mon May 01 2000(Updated: )
The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WebShield | =4.5.44 | |
=4.5.44 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0448 has a medium severity rating due to potential unauthorized access to configuration settings.
Mitigation for CVE-2000-0448 involves restricting access to the management port to trusted IP addresses only.
CVE-2000-0448 affects WebShield version 4.5.44.
Yes, CVE-2000-0448 can lead to a data breach if unauthorized users access sensitive configuration data.
There is no specific patch mentioned for CVE-2000-0448, so applying access restrictions is advised.