The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Pix_firewall_software | Cisco | 4.2(1) | 4.2(1) |
Pix_firewall_software | Cisco | 4.2(2) | 4.2(2) |
Pix_firewall_software | Cisco | 4.2(5) | 4.2(5) |
Pix_firewall_software | Cisco | 4.3 | 4.3 |
Pix_firewall_software | Cisco | 4.4(4) | 4.4(4) |
Pix_firewall_software | Cisco | 5.0 | 5.0 |
Pix_firewall_software | Cisco | 5.1 | 5.1 |
Pix_firewall_software | Cisco | 5.2 | 5.2 |