Eudora Internet Mail Server < 3.2.8 NTLM Authentication Request DoS

medium Nessus Network Monitor Plugin ID 3361

Synopsis

The remote host is vulnerable to a Denial of Service (DoS) attack.

Description

The remote host is running Eudora Internet Mail Server (EIMS), an SMTP server for Mac OS. The installed version of EIMS is vulnerable to a remote Denial of Service (DoS). An attacker exploiting this flaw would be able to cause the remote mail server to crash, impacting the availability of the service to valid users.

Solution

Upgrade to version 3.2.8 or higher.

See Also

http://www.eudora.co.nz/updates.html

Plugin Details

Severity: Medium

ID: 3361

Family: SMTP Servers

Published: 1/10/2006

Updated: 3/6/2019

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 4.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS v3

Risk Factor: Medium

Base Score: 4

Temporal Score: 3.7

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Temporal Vector: CVSS:3.0/E:U/RL:U/RC:C

Vulnerability Information

CPE: cpe:/a:eudora:internet_mail_server

Reference Information

CVE: CVE-2006-0141

BID: 16179