|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> CGI abuses >> Multiple Vulnerabilities in ArGoSoft Mail Server Pro <= 1.8.7.6 Vulnerability Assessment Details
|
Multiple Vulnerabilities in ArGoSoft Mail Server Pro <= 1.8.7.6 |
||
Checks for multiple vulnerabilities in ArGoSoft Mail Server Pro <= 1.8.7.6 Detailed Explanation for this Vulnerability Assessment Summary : The remote mail server is affected by multiple flaws. Description : The version of ArGoSoft Mail Server Pro installed on the remote host suffers from several vulnerabilities, including : - Unauthenticated Account Creation Vulnerability The application does not authenticate requests sent through the web interface before creating mail accounts and may create them even if ArGoSoft has been configured not to. - Multiple Cross-Site Scripting Vulnerabilities ArGoSoft fails to filter some HTML tags in email messages eg, the SRC parameter in an IMG tag. A possible hacker may be able to run arbitrary HTML and script code in a user's browser within the context of the affected web site if the user reads email using ArGoSoft's web interface. See also : http://www.securityfocus.com/archive/1/396694 Solution : Upgrade to ArGoSoft Mail Server Pro 1.8.7.7 or later. Network Security Threat Level: Low / CVSS Base Score : 2 (AV:R/AC:L/Au:NR/C:N/A:N/I:P/B:N) Networks Security ID: 13323, 13326 Vulnerability Assessment Copyright: This script is Copyright (C) 2005-2006 Tenable Network Security |
||
Cables, Connectors |
Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR
$47.00
Cisco WS-C3560-48PS-S 48-Port Managed Gigabit PoE Switch
$56.00
Cisco Catalyst 3650 48-Port Managed PoE+ Gigabit Switch WS-C3650-48FS-E
$49.99
Cisco 24-Port Managed Gigabit Switch WS-C3750G-24TS-S
$49.99
HP 2530-48G 48 Port Gigabit Ethernet Network Switch J9775A
$30.95
New Linksys SE3005 5-port Gigabit Ethernet Switch
$18.99
Linksys SE3008 8 Ports Rack Mountable Gigabit Ethernet Switch
$21.99
HP ProCurve 2530-24G J9776A 24 Port Gigabit Ethernet Managed Network Switch
$34.99
HP JG937A Flexnetwork 5130-48G PoE+ 48-Port Gigabit Network Switch
$65.95
Netgear Prosafe Plus JGS524PE 24 Port Gigabit Switch 12 Port PoE JGS524PE-100NAS
$129.98
|
||
No Discussions have been posted on this vulnerability. |