The mailguard feature in Cisco Secure PIX Firewall 5.2(2) and earlier does not properly restrict access to SMTP commands, which allows remote attackers to execute restricted commands by sending a DATA command before sending the restricted commands.
| Software | From | Fixed in |
|---|---|---|
| cisco / pix_firewall_software | 5.2 | 5.2.x |
| cisco / pix_firewall_software | 4.3 | 4.3.x |
| cisco / pix_firewall_software | 4.2(1) | 4.2(1).x |
| cisco / pix_firewall_software | 4.4(4) | 4.4(4).x |
| cisco / pix_firewall_software | 5.1 | 5.1.x |
| cisco / pix_firewall_software | 4.2(5) | 4.2(5).x |
| cisco / pix_firewall_software | 4.2(2) | 4.2(2).x |
| cisco / pix_firewall_software | 5.0 | 5.0.x |