This script is Copyright (C) 2013-2014 Tenable Network Security, Inc.
The remote device runs a service that is affected by multiple
The version of Cisco IronPort PostX on the remote device is a version
prior to 18.104.22.168. As such, it is affected by multiple vulnerabilities :
- An unspecified vulnerability in the administrative
interface in the embedded HTTPS server allows remote
attackers to read arbitrary files via unknown vectors.
- An unspecified vulnerability in the WebSafe
DistributorServlet in the embedded HTTPS server allows
remote attackers to read arbitrary files via unknown
- An unspecified vulnerability in the embedded HTTPS
server allows remote attackers to execute arbitrary code
via unknown vectors. (CVE-2010-0145)
See also :
Contact Cisco IronPort technical support for update information.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 7.4
Public Exploit Available : false
Nessus Plugin ID: 70073 ()
Bugtraq ID: 381683816938170
CVE ID: CVE-2010-0143CVE-2010-0144CVE-2010-0145
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.