Advertisement
Home arrow ITsec Advisories arrow MailEnable SMTP Service EXPN/VRFY Denial of Service
Thursday, 07 August 2008
 
 
Last week attacks
O.S.  Defs.  %
Linux  7444  78.14%
Win 2003  1434  15.05%
FreeBSD  369  3.87%
Win 2000  180  1.89%
Unknown  60  0.63%
Other  39  0.41%

Total attacks: 9526 of which 3269 single ip and 6257 mass defacements

Main Menu
Home
Digital Warfare
Geopolitics
ITsec News
ITsec Advisories
Test Drive
360°
Digital Attacks Archive
Zone-H events
Publications
Zone-H Friends/Partners
Contact Us
Search
Download Area
Zone-H forum
About this website
Login Form





Lost Password?
No account yet? Register
Visitors' Map
MailEnable SMTP Service EXPN/VRFY Denial of Service PDF Print E-mail
User Rating: / 0
PoorBest 
Written by Marcelo Almeida (Vympel)   
Tuesday, 11 March 2008
A vulnerability has been reported in MailEnable, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an unspecified error within the SMTP service when handling EXPN or VRFY commands. This can be exploited to cause the service to crash via a specially crafted EXPN or VRFY command...

The vulnerability reportedly affects all versions.

Solution:
Apply hotfix (ME-10039).
http://www.mailenable.com/hotfix/ME-10039.EXE

Provided and/or discovered by:
Reported by the vendor.

Original Advisory:
http://secunia.com/advisories/29300/
http://www.mailenable.com/hotfix/


Comments Index (Total Messages: 0)


Post Reply
Name:Guest
Title:
Comment:



Enter this security word

Powered by a Zone-H(ified) version of AkoComment 3.0!


DISCLAIMER: Forum postings are the opinion of the posting author alone, and should not be taken as the opinion of Zone-h. The   author is entirely and solely responsible for all content that he/she uploads, posts, or otherwise transmits via the website. Zone-h is not responsible for such content. However, Zone-h shall have the right, but not the obligation, to delete, move, or edit any content that violates this agreement or is otherwise objectionable as determined by Zone-h in its sole discretion and without notice.
 
< Prev   Next >
 
Top! Top!