5
CVSSv2

CVE-2000-0239

Published: 15/03/2000 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in the MERCUR WebView WebMail server allows remote malicious users to cause a denial of service via a long mail_user parameter in the GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

atrium software mercur mailserver 3.2

atrium software mercur pop3 server 3.20.01

atrium software mercur imap4 server 3.20.01

Exploits

source: wwwsecurityfocuscom/bid/1056/info WebView WebMail-Client is an add-on for the Mercur SMTP/POP3/IMAP4 Mail Server which allows a user to access email through a web browser Insufficient boundary checking exists in the code which handles GET requests, specifically on port 1080 Issuing a GET request containing a string of over 1000 ...