Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Denial of Service >> MailEnable HTTPMail Service Authorization Buffer Overflow Vulnerability


Vulnerability Assessment Details

MailEnable HTTPMail Service Authorization Buffer Overflow Vulnerability

Vulnerability Assessment Summary
Checks for Authorization Buffer Overflow Vulnerability in MailEnable HTTPMail Service

Detailed Explanation for this Vulnerability Assessment

The target is running at least one instance of MailEnable -
http://www.mailenable.com/ - that has a flaw in the HTTPMail service
(MEHTTPS.exe) in the Professional and Enterprise Editions. The flaw
can be exploited by issuing an HTTP request with a malformed
Authorization header, which causes a buffer overflow in HTTPMail
service.
Successful exploitation will result in code execution on the remote
host.

Solution : Apply hotfix : HTTPMail Fix - For MailEnable Professional
and Enterprise (65k) - 22nd April 2005.
See also : http://www.mailenable.com/hotfix/

Network Security Threat Level: High

Networks Security ID: 13350

Vulnerability Assessment Copyright: This script is Copyright (C) 2005-2006 Tenable Network Security

Cables, Connectors


Vintage Sun Lot of 2 128MB EDO DIMM 370-3200-01 Memory Ram picture

Vintage Sun Lot of 2 128MB EDO DIMM 370-3200-01 Memory Ram

$17.95



Vintage Computer Parts Lot Audio Graphics Card CD ROM Sound Blaster AWE Trident  picture

Vintage Computer Parts Lot Audio Graphics Card CD ROM Sound Blaster AWE Trident

$29.99



Vintage Sun Mouse 370-1170-01 401162-035/D  3-button mini din Mouse picture

Vintage Sun Mouse 370-1170-01 401162-035/D 3-button mini din Mouse

$35.00



Sony VAIO Vintage Laptop VGN-CS36H - Great Vintage PC Collector Piece picture

Sony VAIO Vintage Laptop VGN-CS36H - Great Vintage PC Collector Piece

$322.88



Vintage Logitech Mouse Model No. CE9-6MD tested * picture

Vintage Logitech Mouse Model No. CE9-6MD tested *

$22.00



Vintage Commodore 64 Programmers Reference Book picture

Vintage Commodore 64 Programmers Reference Book

$9.99



Vintage Harman Kardon Sound Sticks 1st Gen. Sub & Speakers Set/ Great Condition picture

Vintage Harman Kardon Sound Sticks 1st Gen. Sub & Speakers Set/ Great Condition

$85.00



Vintage Compaq 141649-004 2 Button PS/2 Gray Mouse M-S34 - FAST SHIPPING - NEW picture

Vintage Compaq 141649-004 2 Button PS/2 Gray Mouse M-S34 - FAST SHIPPING - NEW

$8.99



Compaq Multibay Expansion Base Series 2885 Vintage Computer NOT TESTED SOLD ASIS picture

Compaq Multibay Expansion Base Series 2885 Vintage Computer NOT TESTED SOLD ASIS

$44.95



A.Testoni DINAMICO 90’s Vintage Grained Calf Leather Laptop&Briefcase picture

A.Testoni DINAMICO 90’s Vintage Grained Calf Leather Laptop&Briefcase

$210.00



Discussions

No Discussions have been posted on this vulnerability.