7.5

CVE-2005-3690

Stack-based buffer overflow in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to execute arbitrary code via a long mailbox name in the (1) select, (2) create, (3) delete, (4) rename, (5) subscribe, or (6) unsubscribe commands.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.17% 0.914
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.mailenable.com/hotfix/
Patch
http://archives.neohapsis.com/archives/fulldisclosure/2005-11/0581.html
http://secunia.com/advisories/17633
Patch
Vendor Advisory
http://secunia.com/secunia_research/2005-59/advisory/
Patch
Vendor Advisory
http://securitytracker.com/id?1015239
http://www.osvdb.org/20929
http://www.securityfocus.com/bid/15492
http://www.vupen.com/english/advisories/2005/2484
https://exchange.xforce.ibmcloud.com/vulnerabilities/23110