Advisories » Barracuda Spam Firewall 200 Open Mail Relay Vulnerability

 

Release Date: 11/02/2005 Severity: Not specified
SecWatch Advisory: SWID1009782 Cause: Not specified
Solution Status: Vendor patch Impact: Not specified
Exploit Status: None Available Access Vector: Not specified
 
References: CAN-2005-0431
OSVDB#13712

 

Description:

A vulnerability in Barracuda Spam Firewall 200 has been reported, which can be exploited by remote users to use it as an open mail relay.

The problem is that white-listed senders can use Barracuda Spam Firewall as an open mail relay regardless of what domains Barracuda Spam Firewall is configured for.

 

Affected:

Barracuda Spam Firewall 200 firmware 3.1.10 and prior.

 

Solution:

The vulnerability has been fixed in firmware version 3.1.11.

 

Credits:

Sean Sosik-Hamor

 

Free Vulnerability Notification Service

Receive free instant and customisable notifications of new vulnerabilities or exploits via e-mail, web or RSS feeds. Click here for more information.