First published: Wed Aug 19 2009(Updated: )
courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and possibly other versions before FTA_7_0_189, allows remote attackers to send spam e-mail via modified description and client_email parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Accellion File Transfer Appliance | <=7_0_178 | |
Accellion File Transfer Appliance | =7_0_135 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-7012 is classified as a moderate severity vulnerability due to its potential to enable remote attackers to exploit the system.
To mitigate CVE-2008-7012, upgrade the Accellion File Transfer Appliance to version FTA_7_0_189 or higher.
CVE-2008-7012 affects Accellion Secure File Transfer Appliance versions up to and including 7_0_178.
CVE-2008-7012 allows remote attackers to send spam emails by manipulating the description and client_email parameters.
CVE-2008-7012 was reported in 2008, highlighting the vulnerabilities in earlier versions of the Accellion File Transfer Appliance.