MERCUR Messaging < 2005 SP4 Multiple Remote DoS Vulnerabilities

high Nessus Plugin ID 21728

Synopsis

The remote mail server is affected by multiple denial of service flaws.

Description

The remote host appears to be running MERCUR Messaging, a commercial mail server for Windows.

According to its banner, the version of MERCUR Messaging installed on the remote host is affected by various denial of service attacks affecting the SMTP, POP3, and IMAP servers.

Solution

Upgrade to MERCUR Messaging version 2005 SP4 or later.

See Also

http://www.nessus.org/u?0c69cce4

Plugin Details

Severity: High

ID: 21728

File Name: mercur_2005sp4.nasl

Version: 1.16

Type: remote

Agent: windows

Family: Windows

Published: 6/17/2006

Updated: 7/14/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Information

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 6/10/2006

Reference Information

CVE: CVE-2006-7038, CVE-2006-7039, CVE-2006-7040, CVE-2006-7041

BID: 18462