9
CVSSv2

CVE-2007-1301

Published: 07/03/2007 Updated: 11/10/2017
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 905
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the IMAP service in MailEnable Enterprise and Professional Editions 2.37 and previous versions allows remote authenticated users to execute arbitrary code via a long argument to the APPEND command. NOTE: this is probably different than CVE-2006-6423.

Vulnerable Product Search on Vulmon Subscribe to Product

mailenable mailenable enterprise

mailenable mailenable professional 2.37

Exploits

#!/usr/bin/perl # # maildisable-v4pl # # Mail Enable Professional/Enterprise v232-4 (win32) remote exploit # by mu-b - Wed Nov 29 2006 # # - Tested on: Mail Enable Professional v232 (win32) - with HOTFIX # Mail Enable Professional v233 (win32) # Mail Enable Professional v235 (win32) # Mail Enable Professi ...