5
CVSSv2

CVE-1999-1515

Published: 31/08/1999 Updated: 19/12/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A non-default configuration in TenFour TFS Gateway 4.0 allows an malicious user to cause a denial of service via messages with incorrect sender and recipient addresses, which causes the gateway to continuously try to return the message every 10 seconds.

Vulnerable Product Search on Vulmon Subscribe to Product

tenfour tfs gateway 4.0

Exploits

source: wwwsecurityfocuscom/bid/613/info TFS Gateway 40, when configured in a specific non-default manner, is vulnerable to a remotely exploitable denial of service attack If 'return entire message to sender' is enabled for failed send attempts, and an email is sent to the TFS Gateway with 1: the From: address set to an invalid address ...