Lucene search

K
cvelistMitreCVELIST:CVE-2007-2795
HistoryJan 27, 2009 - 11:00 p.m.

CVE-2007-2795

2009-01-2723:00:00
mitre
www.cve.org
4
buffer overflow
ipswitch imail
remote attackers
authenticated users
arbitrary code
heap corruption
imail server
subscribe imap command
stack-based buffer overflow
imap daemon

AI Score

8

Confidence

Low

EPSS

0.156

Percentile

96.0%

Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) the authentication feature in IMailsec.dll, which triggers heap corruption in the IMail Server, or (2) a long SUBSCRIBE IMAP command, which triggers a stack-based buffer overflow in the IMAP Daemon.

AI Score

8

Confidence

Low

EPSS

0.156

Percentile

96.0%