Vulnerability Name:

CVE-2003-1154 (CCN-13611)

Assigned:2003-11-05
Published:2003-11-05
Updated:2017-07-11
Summary:MAILsweeper for SMTP 4.3 allows remote attackers to bypass virus protection via a mail message with a malformed zip attachment, as exploited by certain MIMAIL virus variants.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2003-1154

Source: CCN
Type: SA10148
MAILsweeper Malformed Zip Archive Virus Detection Bypass

Source: SECUNIA
Type: Patch
10148

Source: CCN
Type: Clearswift Limited Web site
MAILsweeper 4.3_10 Patch Login Page

Source: MISC
Type: UNKNOWN
http://www.computerworld.co.nz/cw.nsf/0/BF9E8E6E2D313E5FCC256DD70016473F?OpenDocument&More=

Source: OSVDB
Type: UNKNOWN
2772

Source: CCN
Type: OSVDB ID: 2772
MAILsweeper Malformed Zip Archive Virus Detection Bypass

Source: BID
Type: UNKNOWN
8982

Source: CCN
Type: BID-8982
Clearswift MAILsweeper for SMTP Zip Archive Filtering Bypass Vulnerability

Source: XF
Type: UNKNOWN
mailsweeper-zip-virus-bypass(13611)

Source: XF
Type: UNKNOWN
mailsweeper-zip-virus-bypass(13611)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:clearswift:mailsweeper:4.0:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.1:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.2:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.3:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.4:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.5:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.6:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.6_sp1:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.7:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.8:*:*:*:*:*:*:*
  • OR cpe:/a:clearswift:mailsweeper:4.3.10:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:clearswift:mailsweeper_for_smtp:4.3:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    clearswift mailsweeper 4.0
    clearswift mailsweeper 4.1
    clearswift mailsweeper 4.2
    clearswift mailsweeper 4.3
    clearswift mailsweeper 4.3.3
    clearswift mailsweeper 4.3.4
    clearswift mailsweeper 4.3.5
    clearswift mailsweeper 4.3.6
    clearswift mailsweeper 4.3.6_sp1
    clearswift mailsweeper 4.3.7
    clearswift mailsweeper 4.3.8
    clearswift mailsweeper 4.3.10
    clearswift mailsweeper for smtp 4.3