CVE-2006-3552: Medium severity Ipswitch Ipswitch Secure Server vulnerability

Published Jul 13, 2006
·
Updated

Premium Anti-Spam in Ipswitch IMail Secure Server 2006 and Collaboration Suite 2006 Premium, when using a certain .dat file in the StarEngine /data directory from 20060630 or earlier, does not properly receive and implement bullet signature updates, which allows context-dependent attackers to use the server for spam transmission.

Affected Software

2 affected components
Ipswitch Ipswitch Secure Server=2006_premium
Ipswitch Ipswitch Collaboration Suite=2006_premium

Event History

Jul 13, 2006
CVE Published
12:05 AM
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2006-3552?

CVE-2006-3552 is classified as a moderate severity vulnerability due to the potential for context-dependent attacks.

2

How do I fix CVE-2006-3552?

To resolve CVE-2006-3552, update the Premium Anti-Spam component to a version released after June 30, 2006.

3

What software is affected by CVE-2006-3552?

CVE-2006-3552 affects Ipswitch IMail Secure Server 2006 Premium and Collaboration Suite 2006 Premium.

4

What is the nature of the vulnerability described in CVE-2006-3552?

CVE-2006-3552 involves improper handling of bullet signature updates, which may allow attackers to exploit the system.

5

Is there a workaround for CVE-2006-3552 if I cannot update immediately?

A temporary workaround for CVE-2006-3552 is to disable the use of the vulnerable .dat files until an update can be applied.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203