Check Point Advisories

Microsoft Exchange Server MIME Base64 Decoding Code Execution (MS07-026; CVE-2007-0213) - Improved Performance

Check Point Reference: CPAI-2013-1693
Date Published: 1 May 2013
Severity: High
Last Updated: Thursday 18 April, 2024
Source: CVE-2007-0213
Protection Provided by:

Security Gateway
R75

Who is Vulnerable? Microsoft Exchange Server 2000 SP3
Microsoft Exchange Server 2003 SP1 and SP2
Microsoft Exchange Server 2007
Vulnerability Description A vulnerability exists in the way Microsoft Exchange servers process certain MIME-encoded attachments. An attacker can exploit this vulnerability for code execution in SYSTEM security context.
Update/Patch AvaliableApply patches from: MS07-026

Protection Overview

This protection will detect and block E-mail messages containing attachments exhibiting this vulnerability.

In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.

Security Gateway R75 / R71 / R70

  1. In the IPS tab, click Protections and find the Microsoft Exchange Server MIME Base64 Decoding Code Execution (MS07-026) - Improved Performance protection using the Search tool and Edit the protection's settings.
  2. Install policy on all modules.

SmartView Tracker will log the following entries:
Attack Name: SMTP Protection Violation
Attack Information: Microsoft Exchange Server MIME Base64 Decoding Code Execution (MS07-026) - Improved Performance

×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK