5
CVSSv2

CVE-2002-2357

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

MailEnable 1.5 015 up to and including 1.5 018 allows remote malicious users to cause a denial of service (crash) via a long USER string, possibly due to a buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

mailenable mailenable 1.5016

mailenable mailenable 1.5017

mailenable mailenable 1.5018

mailenable mailenable 1.5015

Exploits

source: wwwsecurityfocuscom/bid/6197/info A buffer overflow vulnerability has been reported for MailEnable's POP3 server The vulnerability is due to insufficent bounds checking of the USER login field An attacker can exploit this vulnerability by connecting to a vulnerable MailEnable server and sending an overly long string as the valu ...