7.5
CVSSv2

CVE-2003-0487

Published: 07/08/2003 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 775
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a long showuser parameter in the do_subscribe module, (2) a long folder parameter in the add_acl module, (3) a long folder parameter in the list module, and (4) a long user parameter in the do_map module.

Vulnerable Product Search on Vulmon Subscribe to Product

kerio kerio mailserver 5.6.3

Exploits

/* Remote Buffer Overflow Exploit for Kerio MailServer 563 */ /* ========================================= */ /* By B-r00t */ /* */ /* In response to the Kerio Mailserver vulnerabilities */ /* discovered by David FMadrid */ /* ...
source: wwwsecurityfocuscom/bid/7967/info Multiple buffer overrun vulnerabilities have been discovered in Kerio MailServer, which affect the webmail component The problem occurs when handling usernames of excessive length and likely occurs due to insufficient bounds checking Due to the similarity of these issues it has been conjectured ...
source: wwwsecurityfocuscom/bid/7967/info Multiple buffer overrun vulnerabilities have been discovered in Kerio MailServer, which affect the webmail component The problem occurs when handling usernames of excessive length and likely occurs due to insufficient bounds checking Due to the similarity of these issues it has been conjectured ...
source: wwwsecurityfocuscom/bid/7967/info Multiple buffer overrun vulnerabilities have been discovered in Kerio MailServer, which affect the webmail component The problem occurs when handling usernames of excessive length and likely occurs due to insufficient bounds checking Due to the similarity of these issues it has been conjecture ...
source: wwwsecurityfocuscom/bid/7967/info Multiple buffer overrun vulnerabilities have been discovered in Kerio MailServer, which affect the webmail component The problem occurs when handling usernames of excessive length and likely occurs due to insufficient bounds checking Due to the similarity of these issues it has been conjectur ...