Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated attackers can send crafted packets to crash the process, thereby bypassing authentication and obtaining system administrator privileges.
History

Wed, 25 Sep 2024 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787

Fri, 20 Sep 2024 14:30:00 +0000

Type Values Removed Values Added
First Time appeared Cellopoint
Cellopoint secure Email Gateway
CPEs cpe:2.3:a:cellopoint:secure_email_gateway:*:*:*:*:*:*:*:*
Vendors & Products Cellopoint
Cellopoint secure Email Gateway
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 20 Sep 2024 10:30:00 +0000

Type Values Removed Values Added
Description Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated attackers can send crafted packets to crash the process, thereby bypassing authentication and obtaining system administrator privileges.
Title Cellopoint Secure Email Gateway - Buffer Overflow
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2024-09-20T10:14:02.578Z

Updated: 2024-09-20T13:53:46.836Z

Reserved: 2024-09-20T10:05:05.810Z

Link: CVE-2024-9043

cve-icon Vulnrichment

Updated: 2024-09-20T13:53:41.630Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-20T11:15:13.280

Modified: 2024-09-25T17:54:05.297

Link: CVE-2024-9043

cve-icon Redhat

No data.