The WebShield SMTP Management Tool version 4.5.44 does not properly restrict access to the management port when an IP address does not resolve to a hostname, which allows remote attackers to access the configuration via the GET_CONFIG command.
References
Configurations
History
20 Nov 2024, 23:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.osvdb.org/326 - | |
References | () http://www.securityfocus.com/bid/1253 - | |
References | () http://www.securityfocus.com/templates/archive.pike?list=1&msg=6C740781F92BD411831F0090273A8AB806FD4A%40exchange.servers.delphis.net - |
07 Nov 2023, 01:55
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2000-05-01 04:00
Updated : 2024-11-20 23:32
NVD link : CVE-2000-0448
Mitre link : CVE-2000-0448
CVE.ORG link : CVE-2000-0448
JSON object : View
Products Affected
network_associates
- webshield
CWE