SecurityGateway < 1.0.2 Administration Interface username Field Remote Overflow

This script is Copyright (C) 2008-2011 Tenable Network Security, Inc.


Synopsis :

The remote web server is affected by a buffer overflow vulnerability.

Description :

The remote host is running Alt-N's SecurityGateway for Exchange/SMTP,
an email spam firewall for Exchange and SMTP servers.

The version of SecurityGateway installed on the remote host is earlier
than 1.0.2. Such versions are reportedly affected by a buffer
overflow that can be triggered using a long 'username' parameter to
the 'SecurityGateway.dll' script to execute arbitrary code on the
remote host with SYSTEM-level privileges, potentially resulting in a
complete compromise of the affected host.

See also :

http://files.altn.com/SecurityGateway/Release/relnotes_en.htm
http://lists.altn.com/WebX/.eedd95a?50@661.aj7ZavbDPBD@

Solution :

Upgrade to SecurityGateway 1.0.2 or later.

Risk factor :

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 9.5
(CVSS2#E:F/RL:U/RC:ND)
Public Exploit Available : true

Family: Firewalls

Nessus Plugin ID: 33104 ()

Bugtraq ID: 29457

CVE ID: CVE-2008-4193