10
CVSSv2

CVE-1999-0005

Published: 20/07/1998 Updated: 09/09/2008
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Arbitrary command execution via IMAP buffer overflow in authenticate command.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

university of washington imap 10.234

netscape messaging server 3.55

Exploits

source: wwwsecurityfocuscom/bid/130/info A vulnerability exists in certain imapd implementations that allow an attacker to execute arbitrary code remotely In certain instances, the code to be executed will be run with root privilege Imap supports a command 'AUTHENTICATE' which specifies the type of authentication mechanism to be used t ...