6.5
CVSSv2

CVE-2008-3606

Published: 12/08/2008 Updated: 11/10/2018
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the IMAP service in Qbik WinGate 6.2.2.1137 and previous versions allows remote authenticated users to cause a denial of service (resource exhaustion) or possibly execute arbitrary code via a long argument to the LIST command. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

qbik wingate 2.1

qbik wingate 3.0

qbik wingate 4.3.0

qbik wingate 4.5.1

qbik wingate 4.5.2

qbik wingate 5.2

qbik wingate 5.2.2

qbik wingate 6.0.2.1001

qbik wingate 6.0.3.1005

qbik wingate 6.0.4.1025

qbik wingate

qbik wingate 3.0.5

qbik wingate 4.0.1

qbik wingate 4.4.0

qbik wingate 5.0

qbik wingate 5.0.0

qbik wingate 5.2.3

qbik wingate 6.0

qbik wingate 6.1.1.1077

qbik wingate 6.1.2.1094

qbik wingate 4.1.0

qbik wingate 4.1.1

qbik wingate 4.4.1

qbik wingate 4.4.2

qbik wingate 5.0.1

qbik wingate 5.0.1.766

qbik wingate 6.0.0.984

qbik wingate 6.0.1.993

qbik wingate 6.1.3.1096

qbik wingate 6.1.4

qbik wingate 2.0

qbik wingate 4.1

qbik wingate 4.2.0

qbik wingate 4.5.0

qbik wingate 5.0.5

qbik wingate 5.1

qbik wingate 6.0.1.995

qbik wingate 6.0.2.1000

qbik wingate 6.2.1

qbik wingate 6.2.2.1137

Exploits

source: wwwsecurityfocuscom/bid/30606/info WinGate is prone to a remote denial-of-service vulnerability affecting the application's IMAP email server Exploiting this issue will consume computer resources and deny access to legitimate users WinGate 622 is vulnerable; other versions may also be affected The following example comman ...