Synopsis
The remote host has an application that allows unauthorized mail relaying.
Description
The Sambar web server is running. It provides a web interface for sending emails. You may simply pass a POST request to /session/sendmail and by this send mails to anyone you want. Due to the fact that Sambar does not check HTTP referrers you do not need direct access to the server!
Solution
Try to disable this module.
Plugin Details
File Name: sambar_sendmail.nasl
Supported Sensors: Nessus
Risk Information
Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N
Vulnerability Information
Required KB Items: www/sambar