MailEnable HTTP Authorization Buffer Overflow
Publish Date: 21 de июля de 2015
Severity: : High
CVE Kennungen: : CVE-2005-1348
Advisory Date: 21 de июля de 2015
DESCRIPTION
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute arbitrary code via a long HTTP Authorization header.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1000488
Trend Micro Deep Security DPI Rule Name: 1000488 - MailEnable HTTP Authorization Buffer Overflow
AFFECTED SOFTWARE AND VERSION:
- MailEnable MailEnable Enterprise 1.04
- MailEnable MailEnable Professional 1.54