It has been reported that MAILsweeper for SMTP may be prone to a vulnerability that may cause the software to fail in detecting malicious zip archives. The software does not filter certain malicious zip archives such as those generated by the Mimail worm (MCID 1763). Successful exploitation may allow malicious code to be executed on client systems. Exploitation can only occur if a user executes a malicious attachment and malicious files must also bypass any local anti virus software. MAILsweeper for SMTP 4.3.10 and prior versions have been reported to be prone to this issue.
It has been reported that MAILsweeper for SMTP may be prone to a vulnerability that may cause the software to fail in detecting malicious zip archives. The software does not filter certain malicious zip archives such as those generated by the Mimail worm (MCID 1763). Successful exploitation may allow malicious code to be executed on client systems. Exploitation can only occur if a user executes a malicious attachment and malicious files must also bypass any local anti virus software. MAILsweeper for SMTP 4.3.10 and prior versions have been reported to be prone to this issue.