CVE-2004-2423: Medium severity Ipswitch IMail vulnerability
Published Dec 31, 2004
·Updated
Unknown vulnerability in the Web calendaring component of Ipswitch IMail Server before 8.13 allows remote attackers to cause a denial of service (crash) via "specific content."
Affected Software
28 affected components
Ipswitch IMail=5.0
Ipswitch IMail=5.0.5
Ipswitch IMail=5.0.6
Ipswitch IMail=5.0.7
Ipswitch IMail=5.0.8
Ipswitch IMail=6.0
Ipswitch IMail=6.0.1
Ipswitch IMail=6.0.2
Ipswitch IMail=6.0.3
Ipswitch IMail=6.0.4
Ipswitch IMail=6.0.5
Ipswitch IMail=6.0.6
Ipswitch IMail=6.1
Ipswitch IMail=6.2
Ipswitch IMail=6.3
Ipswitch IMail=6.4
Ipswitch IMail=7.0.1
Ipswitch IMail=7.0.2
Ipswitch IMail=7.0.3
Ipswitch IMail=7.0.4
Ipswitch IMail=7.0.5
Ipswitch IMail=7.0.6
Ipswitch IMail=7.0.7
Ipswitch IMail=7.1
Ipswitch IMail=7.12
Ipswitch IMail=8.0.3
Ipswitch IMail=8.0.5
Ipswitch IMail=8.1
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Aug 18, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2423?
CVE-2004-2423 is categorized as a denial of service vulnerability that can lead to crashes in the Ipswitch IMail Server.
2
How do I fix CVE-2004-2423?
To fix CVE-2004-2423, ensure that you update your Ipswitch IMail Server to version 8.13 or later.
3
Which versions of Ipswitch IMail Server are affected by CVE-2004-2423?
CVE-2004-2423 affects Ipswitch IMail Server versions prior to 8.13, including versions 5.0, 6.0.4, 6.4, and others.
4
Can CVE-2004-2423 be exploited remotely?
Yes, CVE-2004-2423 can be exploited remotely by attackers, potentially causing a denial of service.
5
What component of Ipswitch IMail Server is vulnerable in CVE-2004-2423?
The vulnerability in CVE-2004-2423 resides in the web calendaring component of the Ipswitch IMail Server.