SMTP: MS Exchange Malformed MIME Attachment

This anomaly triggers when it detects attempts to exploit a known vulnerability in the Microsoft Exchange Server. A successful attack can lead to arbitrary remote code execution.

Extended Description

Microsoft Exchange is prone to a remote code-execution vulnerability because the application fails to properly decode specially crafted email messages. Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the vulnerable application, which may lead to a complete compromise of affected computers.

Affected Products

Avaya messaging_application_server,Microsoft exchange_server_2003

References

BugTraq: 23809

CVE: CVE-2007-0213

Short Name
SMTP:EXCHANGE:MIME-MALF-ATTACH
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
SMTP
Keywords
CVE-2007-0213 bid:23809 exchange microsoft mime smtp
Release Date
07/09/2008
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Avaya

Microsoft

CVSS Score

10.0

Found a potential security threat?