Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom on strip unsuccessful hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.
Name | Vendor | Start Version | End Version |
---|---|---|---|
All_windows | Microsoft | * | * |