First published: Wed Aug 18 2004(Updated: )
Clearswift MAILsweeper before 4.3.15 does not properly detect filenames in BinHex (HQX) encoded files, which allows remote attackers to bypass intended policy.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Clearswift MAILsweeper Business Suite | <=4.3.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0930 is classified as a moderate severity vulnerability that allows remote attackers to bypass security policy.
To fix CVE-2003-0930, upgrade to Clearswift MAILsweeper version 4.3.15 or later.
CVE-2003-0930 allows attackers to send encoded files that could bypass intended security controls.
All versions of Clearswift MAILsweeper prior to 4.3.15 are affected by CVE-2003-0930.
The recommended mitigation for CVE-2003-0930 is to apply the latest software updates rather than relying on workarounds.