First published: Fri May 03 2002(Updated: )
Buffer overflow in CWMail.exe in NetWin before 2.8a allows remote authenticated users to execute arbitrary code via a long item parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netwin Cwmail | =2.7k | |
Netwin Cwmail | =2.7f | |
Netwin Cwmail | =2.7j | |
Netwin Cwmail | =2.7p | |
Netwin Cwmail | =2.7 | |
Netwin Cwmail | =2.7q | |
Netwin Cwmail | =2.7t | |
Netwin Cwmail | =2.7n | |
Netwin Cwmail | =2.7o | |
Netwin Cwmail | =2.7a | |
Netwin Cwmail | =2.7d | |
Netwin Cwmail | =2.7i | |
Netwin Cwmail | =2.7s | |
Netwin Cwmail | =2.7l | |
Netwin Cwmail | =2.7m | |
Netwin Cwmail | =2.7c | |
Netwin Cwmail | =2.7b |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0273 is considered a high severity vulnerability due to the potential for remote code execution.
To fix CVE-2002-0273, upgrade to a secure version of CWMail that is 2.8a or later.
CVE-2002-0273 can be exploited by attackers who send a specially crafted long item parameter to execute arbitrary code.
Versions of CWMail prior to 2.8a, including versions 2.7, 2.7f, 2.7j, and others listed, are affected by CVE-2002-0273.
Remote authenticated users can exploit CVE-2002-0273 to execute arbitrary code, posing a risk to any CWMail users on affected versions.