| --- |
| layout: post |
| status: PUBLISHED |
| published: true |
| title: Apache James Server 2.3.2 security vulnerability fixed |
| id: 2af021dc-fa03-4c1f-bfc0-b76125c80e56 |
| date: '2015-09-30 13:10:42 -0400' |
| categories: james |
| tags: |
| - security |
| permalink: james/entry/apache_james_server_2_3 |
| --- |
| <p> |
| VU#988628: Apache James Server 2.3.2 security vulnerability fixed</p> |
| <p> |
| Severity: Important</p> |
| <p> |
| Vendor: The Apache Software Foundation</p> |
| <p> |
| Versions Affected: James Server 2.3.2</p> |
| <p> |
| Description: Apache James Server 2.3.2 has security issue that can let a user execute arbitrary system command.</p> |
| <p> |
| Mitigation: 2.3.2 users should upgrade to 2.3.2.1 to be downloaded from <a href="http://james.apache.org/download.cgi#Apache_James_Server">http://james.apache.org/download.cgi#Apache_James_Server</a></p> |