CVE-2006-3523: Medium severity Clearswift MIMEsweeper for Web vulnerability
Published Jul 12, 2006
·Updated
Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to cause a denial of service (crash) via an encrypted archived .RAR file, which triggers a scan error and causes the Web Policy Engine service to terminate.
Affected Software
1 affected component
Clearswift MIMEsweeper for Web<=5.1.14
Remediation
Patch Available
Event History
Jul 12, 2006
CVE Published
12:05 AM
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3523?
CVE-2006-3523 has a severity level classified as high due to its potential to cause a denial of service.
2
How do I fix CVE-2006-3523?
To fix CVE-2006-3523, upgrade Clearswift MIMEsweeper for Web to version 5.1.15 or later.
3
What type of attack does CVE-2006-3523 involve?
CVE-2006-3523 involves a remote denial of service attack through the use of an encrypted archived .RAR file.
4
Which versions of Clearswift MIMEsweeper for Web are affected by CVE-2006-3523?
CVE-2006-3523 affects Clearswift MIMEsweeper for Web versions prior to 5.1.15.
5
What happens if CVE-2006-3523 is exploited?
If CVE-2006-3523 is exploited, it can cause the Web Policy Engine service to terminate, leading to a denial of service.