Clearswift MIMEsweeper 5.0.5, when it has been upgraded from MAILsweeper for SMTP version 4.3 or MAILsweeper Business Suite I or II, allows remote attackers to bypass scanning by including encrypted data in a mail message, which causes the message to be marked as "Clean" instead of "Encrypted".
| Software | From | Fixed in |
|---|---|---|
| clearswift / mimesweeper_for_web | 5.0.5 | 5.0.5.x |
| clearswift / mailsweeper_business_suite_ii | - | - |
| clearswift / mailsweeper_business_suite_i | - | - |
| clearswift / mailsweeper_for_smtp | 4.3 | 4.3.x |