Clearswift MAILsweeper 4.x - MIME Attachment Filter Bypass

EDB-ID:

22338




Platform:

Windows

Date:

2003-03-07


source: https://www.securityfocus.com/bid/7044/info

Clearswift MailSweeper does not properly process certain malformed MIME email message attachments. If the attachment does not contain a MIME-Version field, MailSweeper does not recognize the attachment as being an executable type. MailSweeper allows such attachments through, even if it is set to filter executable type file attachments from incoming email messages.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/22338.zip