First published: Fri Jun 23 2000(Updated: )
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to bypass authentication and use the server for mail relay via a username that contains a carriage return.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netwin Cwmail | =2.6g | |
NetWin dMailWeb | =2.6g |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2000-0610 is generally considered to be high due to the possibility of unauthorized mail relay.
To fix CVE-2000-0610, upgrade to a version of NetWin dMailWeb or cwMail that is later than 2.6g.
The potential impacts of CVE-2000-0610 include unauthorized use of the mail server for sending spam or malicious emails.
Versions 2.6g and earlier of both NetWin dMailWeb and cwMail are affected by CVE-2000-0610.
Yes, CVE-2000-0610 can be exploited remotely, allowing attackers to bypass authentication easily.