First published: Wed Jul 12 2006(Updated: )
Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to cause a denial of service (crash) via an encrypted archived .RAR file, which triggers a scan error and causes the Web Policy Engine service to terminate.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Clearswift MIMEsweeper for Web | <=5.1.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3523 has a severity level classified as high due to its potential to cause a denial of service.
To fix CVE-2006-3523, upgrade Clearswift MIMEsweeper for Web to version 5.1.15 or later.
CVE-2006-3523 involves a remote denial of service attack through the use of an encrypted archived .RAR file.
CVE-2006-3523 affects Clearswift MIMEsweeper for Web versions prior to 5.1.15.
If CVE-2006-3523 is exploited, it can cause the Web Policy Engine service to terminate, leading to a denial of service.