Winmail Server Webmail Unspecified Vulnerability

critical Nessus Plugin ID 21223

Synopsis

The remote webmail server is affected by an unspecified issue.

Description

The remote host is running Winmail Server, a commercial mail server for Windows from AMAX Information Technologies.

According to its version number, the remote installation of Winmail Server is affected by an unknown issue in its webmail component. It is unclear whether this is the same issue identified by Secunia in November 2005 and covered by Bugtraq ID 15493.

Solution

Upgrade to Winmail Server 4.3(Build 0302) or later.

See Also

http://www.magicwinmail.net/changelog.asp

Plugin Details

Severity: Critical

ID: 21223

File Name: winmail_43b0302.nasl

Version: 1.16

Type: remote

Family: CGI abuses

Published: 4/14/2006

Updated: 1/19/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

Exploit Ease: No exploit is required

Vulnerability Publication Date: 3/2/2006

Reference Information

CVE: CVE-2006-1250

BID: 17009