Lucene search

K
cve[email protected]CVE-2006-0977
HistoryMar 03, 2006 - 11:02 a.m.

CVE-2006-0977

2006-03-0311:02:00
web.nvd.nist.gov
32
craig morrison
mts pro
open mail relay
remote attackers
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

4.6 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%

Craig Morrison Mail Transport System Professional (aka MTS Pro) acts as an open relay when configured to relay all mail through an external SMTP server, which allows remote attackers to relay mail by connecting to the MTS Pro server, then sending a MAIL FROM that specifies a domain that is local to the server.

Affected configurations

NVD
Node
craig_morrisonmts_pro

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

4.6 Medium

AI Score

Confidence

High

0.011 Low

EPSS

Percentile

84.3%

Related for CVE-2006-0977