MidnightBSD

Advisories for mailscanner

CVE-2002-2228 MEDIUM

MailScanner before 4.0 5-1 and before 3.2 6-1 allows remote attackers to bypass protection via attachments with a filename with (1) extra leading spaces, (2) extra trailing spaces, or (3) alternate character encodings that cannot be processed by MailScanner.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
mailscanner mailscanner *
CVE-2005-1706 HIGH

Unknown vulnerability in MailScanner 4.41.3 and earlier, related to "incomplete reporting of viruses in zip files," allows remote attackers to bypass virus detection.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
mailscanner mailscanner 4.41.2
mailscanner mailscanner 4.40.1
mailscanner mailscanner 4.40.2
mailscanner mailscanner 4.40.7
mailscanner mailscanner 4.41.1
mailscanner mailscanner 4.39.4
mailscanner mailscanner 4.40.4
mailscanner mailscanner 4.40.11
mailscanner mailscanner *
mailscanner mailscanner 4.39.6
mailscanner mailscanner 4.39.1
mailscanner mailscanner 4.40.8
mailscanner mailscanner 4.40.6
CVE-2005-3470 HIGH

SQL injection vulnerability in in the authenticate function in MailWatch for MailScanner 1.0.2 allows remote attackers to execute arbitrary SQL commands.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
mailscanner mailscanner 1.0.2