5
CVSSv2

CVE-1999-1557

Published: 02/05/2005 Updated: 19/12/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the login functions in IMAP server (imapd) in Ipswitch IMail 5.0 and previous versions allows remote malicious users to cause a denial of service and possibly execute arbitrary code via (1) a long user name or (2) a long password.

Vulnerable Product Search on Vulmon Subscribe to Product

ipswitch imail

Exploits

source: wwwsecurityfocuscom/bid/502/info The imapd login process is susceptible to a buffer overflow attack which will crash the service Telnet to target machine, port 143 * OK IMAP4 Server (IMail 406) X LOGIN glob1 glob2 Where glob1 is 1200 characters and glob2 is 1300 characters ...