Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Clearswift

First CVE: Dec 19, 2000Active for: 26 yearsTotal CVEs: 28
41.3
VTI Score
High

Clearswift specializes in email and web content filtering and data loss prevention appliances, with its vulnerability footprint concentrated in a focused portfolio of gateway security products such as MailSweeper and MimeSweeper that sit inline on organizational networks. The vendor's disclosures cluster around memory-safety and input-validation weaknesses typical of network filtering engines that must parse and inspect high volumes of untrusted messages and web traffic. While the product scope is narrow, these appliances occupy a critical position in email and web security infrastructure, making their vulnerabilities relevant to organizations relying on them for compliance and threat prevention. Defenders should monitor this vendor's advisories for its gateway products and assess exposure in environments where MailSweeper or MimeSweeper instances handle mail and web traffic; current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
28
Total CVEs
More Total CVEs than 97% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Clearswift over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 19, 2000
25 years ago
Most Recent CVE
Jul 12, 2006
7,317 days ago

Products(6 total)

Top CVEs

Signals from CVEs in this vendor scope (28 CVEs).

28 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2003-0121HIGH
Clearswift MAILsweeper 4.x allows remote attackers to bypass attachment detection via an attachment that does not specify a MIME-Version header field, which is processed by some ma
Mar 18, 20037.531NOYES
CVE-2004-0234HIGH
Multiple stack-based buffer overflows in the get_header function in header.c for LHA 1.14, as used in products such as Barracuda Spam Firewall, allow remote attackers or local user
Aug 18, 200410.029NONO
CVE-2003-1014HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use multiple MIME fields with the same name, w
Oct 20, 20047.525NONO
CVE-2004-0051HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard but frequently supported Cont
Oct 20, 20047.521NONO
CVE-2003-1015HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use whitespace in an unusual fashion, which ma
Oct 20, 20047.520NONO
CVE-2003-1016HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use malformed quoting in MIME headers, paramet
Oct 20, 20047.520NONO
CVE-2004-0052HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use non-standard separator characters, or use
Oct 20, 20047.520NONO
CVE-2004-0053HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use fields that use RFC2047 encoding, which ma
Oct 20, 20047.520NONO
CVE-2004-0161HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME messages that use RFC2231 encoding, which may be interpreted
Oct 20, 20047.520NONO
CVE-2004-0162HIGH
Multiple content security gateway and antivirus products allow remote attackers to bypass content restrictions via MIME encapsulation that uses RFC822 comment fields, which may be
Oct 20, 20047.520NONO
View all 28 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products28 CVEs
39%
61%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown28 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown28 (100.0%)
User Interaction
None0 (0.0%)
Unknown28 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown28 (100.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (28 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
3.6% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Clearswift.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Clearswift — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Clearswift's Products

View all 1 CNAs →

Top CWEs