CVE-2006-0977

medium

Description

Craig Morrison Mail Transport System Professional (aka MTS Pro) acts as an open relay when configured to relay all mail through an external SMTP server, which allows remote attackers to relay mail by connecting to the MTS Pro server, then sending a MAIL FROM that specifies a domain that is local to the server.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/24985

http://www.vupen.com/english/advisories/2006/0786

http://www.securityfocus.com/bid/16840

http://www.securityfocus.com/archive/1/426181/100/0/threaded

http://secunia.com/advisories/19067

Details

Source: Mitre, NVD

Published: 2006-03-03

Updated: 2018-10-18

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 5.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Severity: Medium