CVE-2002-2261
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
31/12/2002
Last modified:
03/04/2025
Description
Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' function by spoofing a blank DNS hostname.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:sendmail:sendmail:8.9.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.9.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.9.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.9.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.10:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.10.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.10.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.10.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:sendmail:sendmail:8.11.6:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- ftp://patches.sgi.com/support/free/security/advisories/20030101-01-P
- http://secunia.com/advisories/7826
- http://securitytracker.com/id?1005748=
- http://www.securityfocus.com/bid/6548
- http://www.sendmail.org/8.12.7.html
- http://www.vupen.com/english/advisories/2009/3539
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10775
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6892
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8512
- ftp://patches.sgi.com/support/free/security/advisories/20030101-01-P
- http://secunia.com/advisories/7826
- http://securitytracker.com/id?1005748=
- http://www.securityfocus.com/bid/6548
- http://www.sendmail.org/8.12.7.html
- http://www.vupen.com/english/advisories/2009/3539
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10775
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6892
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8512