vendor:
MailEnable
by:
David Maciejak
N/A
CVSS
N/A
Buffer Overflow
119
CWE
Product Name: MailEnable
Affected Version From: Not specified
Affected Version To: Not specified
Patch Exists: NO
Related CWE: CVE-2005-1348
CPE: a:mailenable:mailenable
Platforms Tested: Windows
2005
MailEnable Authorization Header Buffer Overflow
This module exploits a remote buffer overflow in the MailEnable web service. The vulnerability is triggered when a large value is placed into the Authorization header of the web request. MailEnable Enterprise Edition versions prior to 1.0.5 and MailEnable Professional versions prior to 1.55 are affected.
Mitigation:
Patch the vulnerability by updating to MailEnable Enterprise Edition version 1.0.5 or MailEnable Professional version 1.55.