CVE-2002-2228

MailScanner before 4.0 5-1 and before 3.2 6-1 allows remote attackers to bypass protection via attachments with a filename with (1) extra leading spaces, (2) extra trailing spaces, or (3) alternate character encodings that cannot be processed by MailScanner.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mailscanner:mailscanner:*:*:*:*:*:*:*:*
cpe:2.3:a:mailscanner:mailscanner:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://www.iss.net/security_center/static/10609.php - Patch () http://www.iss.net/security_center/static/10609.php - Patch
References () http://www.securityfocus.com/bid/6148 - () http://www.securityfocus.com/bid/6148 -

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2002-2228

Mitre link : CVE-2002-2228

CVE.ORG link : CVE-2002-2228


JSON object : View

Products Affected

mailscanner

  • mailscanner
CWE
CWE-20

Improper Input Validation