CVE-2001-1282: Medium severity Ipswitch IMail vulnerability
Published Oct 12, 2001
·Updated
Ipswitch IMail 7.04 and earlier records the physical path of attachments in an e-mail message header, which could allow remote attackers to obtain potentially sensitive configuration information.
Affected Software
3 affected components
Ipswitch IMail=6.0.6
Ipswitch IMail=6.0.2
Ipswitch IMail=7.0.4
Event History
Oct 12, 2001
CVE Published
04:00 AM
May 3, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-1282?
CVE-2001-1282 is classified as a medium severity vulnerability due to its potential exposure of sensitive information.
2
How do I fix CVE-2001-1282?
To fix CVE-2001-1282, upgrade to a later version of Ipswitch IMail that addresses this vulnerability.
3
What versions are affected by CVE-2001-1282?
CVE-2001-1282 affects Ipswitch IMail versions 6.0.2, 6.0.6, and 7.0.4.
4
What type of information can be exposed by CVE-2001-1282?
CVE-2001-1282 may expose sensitive configuration information stored in the email message headers.
5
Is there a known exploit for CVE-2001-1282?
There are no public exploits documented specifically for CVE-2001-1282, but the risk comes from potential remote access to configuration paths.