First published: Wed Dec 31 2003(Updated: )
Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows | ||
Clearswift MAILsweeper | =4.3.6_sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-1330 is considered a medium severity vulnerability that allows remote attackers to bypass email attachment filtering.
To fix CVE-2003-1330, upgrade to the latest version of Clearswift MAILsweeper that addresses this vulnerability.
CVE-2003-1330 affects Clearswift MAILsweeper for SMTP version 4.3.6 SP1.
CVE-2003-1330 enables remote attackers to exploit the software's failure to execute custom hooks, allowing for bypassing of email attachment security policies.
Organizations using Clearswift MAILsweeper version 4.3.6 SP1 for email filtering may be impacted by CVE-2003-1330.