CVE-2004-0052Mailsweeper vulnerability

4 documents4 sources
Severity
7.5HIGHNVD
EPSS
0.3%
top 43.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 20
Latest updateApr 29

Description

Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard separator characters, or use standard separators incorrectly, within MIME headers, fields, parameters, or values, which may be interpreted differently by mail clients.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages3 packages

NVDpaul_l_daniels/ripmime11 versions+10
NVDclearswift/mailsweeper7 versions+6

🔴Vulnerability Details

2
GHSA
GHSA-99hf-qw45-47f2: Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard2022-04-29
CVEList
CVE-2004-0052: Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard2004-09-24

💬Community

1
Bugzilla
CVE-2006-0052 Mailman DoS, CVE-2006-1712 Mailman cross site scripting bug and CVE-2005-3573 Mailman Denial of Service (CVE-2005-4153); also CAN-2004-1177 Cross-site scripting (XSS) vulnerability2006-06-02
CVE-2004-0052 — Clearswift Mailsweeper vulnerability | cvebase