Clearswift MAILsweeper before 4.3.15 does not properly detect filenames in BinHex (HQX) encoded files, which allows remote attackers to bypass intended policy.
Link | Tags |
---|---|
http://www.corsaire.com/advisories/c030807-001.txt | patch vendor advisory |
http://marc.info/?l=bugtraq&m=109241692108678&w=2 | mailing list |