CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:S/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
99.9%
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote authenticated users to execute arbitrary code via the (1) Search or (2) Search Charset command.
Vendor | Product | Version | CPE |
---|---|---|---|
ipswitch | imail_server | * | cpe:2.3:a:ipswitch:imail_server:*:*:*:*:*:*:*:* |
ipswitch | ipswitch_collaboration_suite | * | cpe:2.3:a:ipswitch:ipswitch_collaboration_suite:*:*:*:*:*:*:*:* |
docs.ipswitch.com/IMail%202006.21/ReleaseNotes/IMail_RelNotes.htm#NewRelease
labs.idefense.com/intelligence/vulnerabilities/display.php?id=563
secunia.com/advisories/26123
www.securityfocus.com/bid/24962
www.securitytracker.com/id?1018419
www.vupen.com/english/advisories/2007/2574
exchange.xforce.ibmcloud.com/vulnerabilities/35496
exchange.xforce.ibmcloud.com/vulnerabilities/35500